Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM API Management (CVE-2015-3194, CVE-2015-3195, CVE-2015-3196)

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on December 3, 2015 by the OpenSSL Project. OpenSSL is used by IBM API Management. IBM API Management has addressed the applicable CVEs. CVE(s): CVE-2015-3194, CVE-2015-3195 and CVE-2015-3196Affected product(s) and affected version(s):IBM API Management V3.0 IBM API Management V4.0 Refer to the following reference URLs for remediation and additional vulnerability details:Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg21978085X-Force

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_affect_ibm_api_management_cve_2015_3194_cve_2015_3195_cve_2015_3196?lang=en_us