Tuesday, February 28, 2017

IBM Security Bulletin: IBM QRadar SIEM uses broken or risky cryptographic algorithms (CVE-2016-2879)

The software uses an outdated insecure cipher or it is using a proprietary crypto standard which is likely to be vulnerable. Outdated/broken algorithms are MD4, MD5, SHA1, DES, ECB, RC4, Export ciphers, SSLv2, SSLv3, DH using keys less than 1024

CVE(s): CVE-2016-2879

Affected product(s) and affected version(s):

IBM QRadar 7.2.0, 7.2.1, 7.2.2, 7.2.3, 7.2.4, 7.2.5, 7.2.6, 7.2.7

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2lPE1Oo
X-Force Database: http://ift.tt/2lkhYvQ

The post IBM Security Bulletin: IBM QRadar SIEM uses broken or risky cryptographic algorithms (CVE-2016-2879) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2lPwiji

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.