Boletines de Vulnerabilidades

IBM Security Bulletin: Vulnerability in Diffie-Hellman ciphers affects IBM WebSphere Business Integration for Financial Networks for Multiplatforms when using SAG configuration services (CVE-2015-4000


Información sobre el sistema

   
Software afectado IBM

Descripción

The Logjam Attack on the Diffie-Hellman (DH) key exchange protocol may affect IBM WebSphere Business Integration for Financial Networks for Multiplatforms, if the SAG Configuration Service is used to configure a SAG via the SAG Add-On component. CVE(s): CVE-2015-4000 Affected product(s) and affected version(s): IBM WebSphere Business Integration for Financial Networks for Multiplatforms 3.1.1 Refer to the following reference URLs for remediation and additional vulnerability details:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerability_in_diffie_hellman_ciphers_affects_ibm_websphere_business_integration_for_financial_networks_for_multiplatforms_when_using_sag_configuration_services_cve_2015_40

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-06-30

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT