Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect WebSphere Cast Iron

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 1, 2016 by the OpenSSL Project. OpenSSL is used by WebSphere Cast Iron. WebSphere Cast Iron has addressed the applicable CVEs including the “DROWN: Decrypting RSA with Obsolete and Weakened eNcryption" vulnerabilityCVE(s): CVE-2016-0705, CVE-2016-0797, CVE-2016-0799, CVE-2016-0702, CVE-2016-0703, CVE-2016-0800Affected product(s) and affected version(s):WebSphere Cast Iron v 6.4.0.x WebSphere Cast Iron v 6.3.0.x WebSphere Cast Iron v

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_websphere_cast_iron?lang=en_us