Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple Vulnerabilities in OpenSSL affect Tivoli Workload Scheduler


Información sobre el sistema

   
Software afectado IBM

Descripción

OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by Tivoli Workload Scheduler. Tivoli Workload Scheduler has addressed the applicable CVEs. CVE(s): CVE-2014-3569, CVE-2014-3570, CVE-2014-3572, CVE-2014-8275 and CVE-2015-0204 Affected product(s) and affected version(s): Tivoli Workload Scheduler Distributed 8.4.0 FP07 and earlier

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_tivoli_workload_scheduler?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-3569 ,CVE-2014-3570 ,CVE-2014-3572 ,CVE-2014-8275 ,CVE-2015-0204 ,CVE-2014-3571 ,CVE-2015-0205 and CVE-2015-0206.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-04-09

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT