Boletines de Vulnerabilidades

Security Bulletin: Vulnerabilities in OpenSSL affect Flex System FC3171 8Gb SAN Switch and Flex System FC3171 8Gb SAN Pass-thru (CVE-2014-3513, CVE-2014-3567, CVE-2014-3568)


Información sobre el sistema

   
Software afectado IBM

Descripción

OpenSSL vulnerabilities along with SSL 3 Fallback protection (TLS_FALLBACK_SCSV) were disclosed on October 15, 2014 by the OpenSSL Project. OpenSSL is used by Flex System FC3171 8Gb SAN Switch and Flex System FC3171 8Gb SAN Pass-thru. Flex System FC3171 8Gb SAN Switch and Flex System FC3171 8Gb SAN Pass-thru has addressed the applicable CVEs and included the SSL 3.0 Fallback protection (TLS_FALLBACK_SCSV) provided by OpenSSL. CVE(s): CVE-2014-3513, CVE-2014-3567 and CVE-2014-3568 Affected

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_vulnerabilities_in_openssl_affect_flex_system_fc3171_8gb_san_switch_and_flex_system_fc3171_8gb_san_pass_thru_cve_2014_3513_cve_2014_3567_cve_2014_3568?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2014-3513 ,CVE-2014-3567 ,CVE-2014-3568 and CVE-2015-4000.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-06-30

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT