IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Cognos Planning (CVE-2014-3567, CVE-2014-3568)

OpenSSL vulnerabilities along with SSL 3 Fallback protection (TLS_FALLBACK_SCSV) were disclosed on October 15, 2014 by the OpenSSL Project. OpenSSL is used by IBM Cognos Planning. IBM Cognos Planning has addressed the applicable CVEs and included the SSL 3.0...



from IBM Product Security Incident Response Team http://ift.tt/1yrxnA9