Wednesday, July 1, 2015

IBM Security Bulletin: Dual_EC_DRBG vulnerability and RC4 stream cipher vulnerability affect WebSphere Transformation Extender Secure Adapter Collection (CVE-2007-6755, CVE-2015-2808)

Some versions of WebSphere Transformation Extender Secure Adapter Collection utilize RSA BSAFE SSL-C with the Dual_EC_DRBG random number generation algorithm. Usage of Dual_EC_DRBG random number generation algorithm might allow context-dependent attackers to...

from IBM Product Security Incident Response Team http://ift.tt/1NvDXst

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.