Vulnerability Bulletins

Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect IBM Flex System Manager (FSM) (Multiple CVEs)

   
Affected software IBM
 
There are multiple vulnerabilities in IBM Runtime Environment Java Technology Edition, Version 1.6 and 1.7 that is used by IBM Flex System Manager (FSM). This also includes a fix for the Padding Oracle On Downgraded Legacy Encryption (POODLE) SSLv3 vulnerability (CVE-2014-3566). These were disclosed as part of the IBM Java SDK updates in July 2014 and October 2014. CVE(s): CVE-2014-3566, CVE-2014-4244, CVE-2014-4263, CVE-2014-6513, CVE-2014-6506, CVE-2014-6511, CVE-2014-6512,CVE-2014-6457,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_ibm_flex_system_manager_fsm_multiple_cves?lang=en_us