IBM Security Bulletin: Multiple OpenSSL vulnerabilities in Node.js included in Rational Application Developer for WebSphere Software
Multiple OpenSSL vulnerabilities in Node.js were found on May 3, 2016.
CVE(s): CVE-2016-2107, CVE-2016-2105
Affected product(s) and affected version(s):
IBM Rational Application Developer for WebSphere Software v9.1 and v9.5
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1TubeZ5
X-Force Database: http://ift.tt/1NwOQz5
X-Force Database: http://ift.tt/1NwOPLs
from IBM Product Security Incident Response Team http://ift.tt/27LaTIZ