IBM Security Bulletin: Multiple OpenSSL vulnerabilities in Node.js included in Rational Application Developer for WebSphere Software

Multiple OpenSSL vulnerabilities in Node.js were found on May 3, 2016.



CVE(s): CVE-2016-2107, CVE-2016-2105


Affected product(s) and affected version(s):

IBM Rational Application Developer for WebSphere Software v9.1 and v9.5



Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1TubeZ5
X-Force Database: http://ift.tt/1NwOQz5
X-Force Database: http://ift.tt/1NwOPLs


from IBM Product Security Incident Response Team http://ift.tt/27LaTIZ