Boletines de Vulnerabilidades

Security Bulletin: Avoiding Weak SSL/TLS Encryption in IBM System x and Flex Systems (CVE-2013-4030)


Información sobre el sistema

   
Software afectado IBM

Descripción

Encryption with symmetric keys shorter than 128 bits is considered more vulnerable to attack than encryption with keys 128 bits or longer. Several SSL/TLS cipher suites include encryption with keys shorter than 128 bits. CVE(s): CVE-2013-4030 Affected product(s) and affected version(s): Flex System x220 Compute Node, Types 7906,2585, any model Flex System x240 Compute Node, Types 8737,8738,7863, any model Flex System x440 Compute Node, Type 7917, any model Flex System Manager Node,

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_avoiding_weak_ssl_tls_encryption_in_ibm_system_x_and_flex_systems_cve_2013_4030?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2013-4030 ,CVE-2011-3389 ,CVE-2013-0464 ,CVE-2013-0599 and CVE-2013-0169.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2013-09-14

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT