Boletines de Vulnerabilidades

IBM Security Bulletin: OpenSSL vulnerabilities affect IBM Security Access Manager for Web (CVE-2014-3569, CVE-2014-3570, CVE-2015-0204)

   
Software afectado IBM
 
OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by IBM Security Access Manager for Web. IBM Security Access Manager for Web has addressed the applicable CVEs. CVE(s): CVE-2014-3569, CVE-2014-3570 and CVE-2015-0204 Affected product(s) and affected version(s): IBM Security Access Manager for Web 7.0 (appliance-based

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_openssl_vulnerabilities_affect_ibm_security_access_manager_for_web_cve_2014_3569_cve_2014_3570_cve_2015_0204?lang=en_us