Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect the IBM Tivoli Storage Manager Client and IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (CVE-2014-3569, CVE-2

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes "FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerabilities. OpenSSL, used by the Tivoli Manager Client, has addressed the applicable CVEs. CVE(s): CVE-2014-3569, CVE-2014-3570, CVE-2014-3572, CVE-2014-8275 and CVE-2015-0204 Affected product(s) and affected version(s): This security exposure affects network connections between the Tivoli Storage Manager Client

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_the_ibm_tivoli_storage_manager_client_and_ibm_tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware_cve_2014_3569_cve_2