Friday, March 1, 2019

IBM Security Bulletin: IBM Security Identity Adapters affected by OpenSSL RSA Key vulnerability (CVE-2018-0737)

The Windows and z/OS Security Identity Adapters are now upgraded to a more current release to correct CVE (CVE-2018-0737) “OpenSSL RSA Key generation algorithm information disclosure”.

CVE(s): CVE-2018-0737

Affected product(s) and affected version(s):

IBM Security Identity Manager v6.0 Adapters for Windows and z/OS platforms
Security Identity Adapters v7.x for Windows and z/OS platforms

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=ibm10732111
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/141679

The post IBM Security Bulletin: IBM Security Identity Adapters affected by OpenSSL RSA Key vulnerability (CVE-2018-0737) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2TcGOUp

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.