IBM Support

OpenSSL vulnerabilities published on 5 June 2014

Question & Answer


Question

Are DataPower appliances affected by the vulnerabilities published by OpenSSL on 5 June 2014?

Answer

IBM has determined that except for vulnerability CVE-2014-0224, the rest of the OpenSSL vulnerabilities published on 05 June 2014 do not impact DataPower appliances. Fix for CVE-2014-0224 is available in versions 5.0.0.15, 6.0.0.7, 6.0.1.3. Refer the Security bulletin for related details.

[{"Product":{"code":"SS9H2Y","label":"IBM DataPower Gateway"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"General","Platform":[{"code":"PF009","label":"Firmware"}],"Version":"5.0.0;6.0.0;6.0.1","Edition":"","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
15 June 2018

UID

swg21675501