Boletines de Vulnerabilidades

IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX, including RC4 stream cipher vulnerability (CVE-20

   
Software afectado IBM
 
There are multiple vulnerabilities in IBM® Runtime Environment Java™ Technology Edition used by WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX. These issues were disclosed as part of the IBM Java SDK updates in January 2015. In addition, the RC4 “Bar Mitzvah” Attack for SSL/TLS affects WebSphere Transformation Extender with Launcher Hypervisor Edition for AIX. CVE(s): CVE-2014-6593, CVE-2015-0383, CVE-2015-0410 and CVE-2015-2808 Affected

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_websphere_transformation_extender_with_launcher_hypervisor_edition_for_aix_including_rc4_stream_cipher_vulnerability_cve_2