Vulnerability Bulletins

IBM Security Bulletin: Vulnerability in MD5 Signature and Hash Algorithm affects Rational Performance Tester (CVE-2015-7575)

   
Affected software IBM
 
The MD5 “SLOTH” vulnerability on TLS 1.2 affects Rational Performance Tester. CVE(s): CVE-2015-7575Affected product(s) and affected version(s):Rational Performance Tester version 8.2.*, 8.3.*, 8.5.*, 8.6.* and 8.7.*. Workarounds and Mitigations Mitigating steps for Bouncy Castle: 1) Download the bouncy castle version 1.5.3 ( the jar can be downloaded here https://www.bouncycastle.org/download/jce-jdk13-154.jar ). 2) Locate the previous bouncy castle librarie delivered, this will be

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_md5_signature_and_hash_algorithm_affects_rational_performance_tester_cve_2015_7575?lang=en_us