IBM Security Bulletin: IBM Security Access Manager appliances use some weak cryptographic algorithms for stash file encryption (CVE-2016-3019)
IBM Security Access Manager appliance use password stash files, which may be encrypted using a weak encryption algorithm.
CVE(s): CVE-2016-3019
Affected product(s) and affected version(s):
IBM Security Access Manager 9.0, all firmware versions
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2qTrUUw
X-Force Database: http://ift.tt/2rCTzqa
The post IBM Security Bulletin: IBM Security Access Manager appliances use some weak cryptographic algorithms for stash file encryption (CVE-2016-3019) appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team http://ift.tt/2qTxKWe