Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect IBM Lotus Protector for Mail Security (CVE-2016-0702 CVE-2016-0703 CVE-2016-0705 CVE-2016-0797 CVE-2016-0799)

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 1, 2016 by the OpenSSL Project. OpenSSL is used by IBM Lotus Protector for Mail Security. IBM Lotus Protector for Mail Security has addressed the applicable CVEs including the “DROWN: Decrypting RSA with Obsolete and Weakened eNcryption" vulnerability. CVE(s): CVE-2016-0702, CVE-2016-0703, CVE-2016-0705, CVE-2016-0797 and CVE-2016-0799Affected product(s) and affected version(s):IBM Lotus Protector for Mail Security 2.8.0.0 IBM Lotus

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_ibm_lotus_protector_for_mail_security_cve_2016_0702_cve_2016_0703_cve_2016_0705_cve_2016_0797_cve_2016_0799?lang=en_us