Vulnerability Bulletins

IBM Security Bulletin: Potential security vulnerability in IBM WebSphere Application Server for Bluemix if FIPS 140-2 is enabled (CVE-2016-0306) and multiple vulnerabilities in Samba – including

   
Affected software IBM
 
There is a potential security vulnerability in IBM WebSphere Application Server if FIPS 140-2 is enabled. Samba vulnerabilities were disclosed on April 12, 2016. IBM WebSphere Application Server for Bluemix has addressed the applicable CVEs including the vulnerability commonly referred to as “Badlock”.CVE(s): CVE-2016-0306, CVE-2016-2118, CVE-2016-2110, CVE-2016-2112, CVE-2016-2113, CVE-2016-2114, CVE-2016-2115, CVE-2015-5370, CVE-2016-2111Affected product(s) and affected

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_potential_security_vulnerability_in_ibm_websphere_application_server_for_bluemix_if_fips_140_2_is_enabled_cve_2016_0306_and_multiple_vulnerabilities_in_samba_including_badloc