Boletines de Vulnerabilidades

There is a vulnerability in Open Source OpenSSL version that is used by the IBM FlashSystem 900. An exploit of this vulnerability could result in a denial of service. CVE(s): CVE-2015-0286 Affected pr


Información sobre el sistema

   
Software afectado IBM

Descripción

IBM Security Privileged Identity Manager is affected by multiple freetype vulnerabilities. The RC4 “Bar Mitzvah” Attack for SSL/TLS affects IBM Security Privileged Identity Manager OpenSSL vulnerabilities were disclosed on January 8, 2015 by the OpenSSL Project. This includes “FREAK: Factoring Attack on RSA-EXPORT keys" TLS/SSL client and server vulnerability. OpenSSL is used by IBM Security Privileged Identity Manager. IBM Security Privileged Identity Manager has

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/there_is_a_vulnerability_in_open_source_openssl_version_that_is_used_by_the_ibm_flashsystem_900_an_exploit_of_this_vulnerability_could_result_in_a_denial_of_service_cve_s_cve_2015_0286_affected_pr

Identificadores estándar

Propiedad Valor
CVE

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-08-11

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT