Boletines de Vulnerabilidades

IBM Security Bulletin: Vulnerabilities in OpenSSL including ClientHello DoS affect Tivoli Workload Scheduler


Información sobre el sistema

   
Software afectado IBM

Descripción

OpenSSL vulnerabilities were disclosed on March 19, 2015 by the OpenSSL Project. This includes OpenSSL ClientHello sigalgs DoS (CVE-2015-0291). OpenSSL is used by Tivoli Workload Scheduler CVE(s): CVE-2015-0291 Affected product(s) and affected version(s): TWS uses OpenSSL only for secure communication between internal processes. For Tivoli Workload Scheduler Distributed, TWS nodes are impacted by OpenSSL security exposures only if the TWS workstation has been defined with

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilities_in_openssl_including_clienthello_dos_affect_tivoli_workload_scheduler?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-0291 ,CVE-2015-0138 and CVE-2015-0159.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-04-10

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT