Boletines de Vulnerabilidades

Title: IBM Security Bulletin: Multiple vulnerabilities in IBM Java Runtime affect Security Directory Integrator (CVE-2015-4000) (CVE-2015-0488) (CVE-2015-0478) (CVE-2015-1916)

   
Software afectado IBM
 
here are multiple vulnerabilities in IBM Runtime Environment Java Technology Edition, Version 5.0 , Version 6.0 and Version 7.0 that is used by Security Directory Integrator. Some of these issues were disclosed as part of the IBM Java SDK updates in April 2015. This bulletin also addresses FREAK: Factoring Attack on RSA-EXPORT keys" SSL/TLS vulnerability RC4 Bar Mitzvah Attack for SSL/TLS vulnerability and the Logjam Attack on TLS connections using the Diffie-Hellman (DH) key exchange

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/title_ibm_security_bulletin_multiple_vulnerabilities_in_ibm_java_runtime_affect_security_directory_integrator_cve_2015_4000_cve_2015_0488_cve_2015_0478_cve_2015_1916?lang=en_us