Vulnerability Bulletins

IBM Security Bulletin: IBM Tivoli Key Lifecycle Manager / IBM Security Key Lifecycle Manager can be affected by vulnerabilities in current IBM SDK for Java shipped by IBM WebSphere Application Server

   
Affected software IBM
 
Security vulnerabilities exist in the IBM SDK for Java that is shipped with IBM WebSphere Application Server and could affect the IBM Tivoli Key Lifecycle Manager (TKLM) / IBM Security Key Lifecycle Manager (SKLM). CVE(s): CVE-2014-0878 and CVE-2014-0453 Affected product(s) and affected version(s): The following versions are affected: IBM Tivoli Key Lifecycle Manager V1.0, V2.0, V.2.0.1 IBM Security Key Lifecycle Manager V2.5 on distributed platforms Refer to the following reference

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_tivoli_key_lifecycle_manager_ibm_security_key_lifecycle_manager_can_be_affected_by_vulnerabilities_in_current_ibm_sdk_for_java_shipped_by_ibm_websphere_application_server