Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2015-0138

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2015-0138
Last Modified 05 Jul 2015 09:59:21
Published 24 Mar 2015 09:59:17
Confidentiality Impact NONE NONE
Integrity Impact PARTIAL PARTIAL
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity MEDIUM
Authentication NONE

CVE-2015-0138

Summary

GSKit in IBM Tivoli Directory Server (ITDS) 6.0 before 6.0.0.73-ISS-ITDS-IF0073, 6.1 before 6.1.0.66-ISS-ITDS-IF0066, 6.2 before 6.2.0.42-ISS-ITDS-IF0042, and 6.3 before 6.3.0.35-ISS-ITDS-IF0035 and IBM Security Directory Server (ISDS) 6.3.1 before 6.3.1.9-ISS-ISDS-IF0009 does not properly restrict TLS state transitions, which makes it easier for remote attackers to conduct cipher-downgrade attacks to EXPORT_RSA ciphers via crafted TLS traffic, related to the "FREAK" issue, a different vulnerability than CVE-2015-0204.

Vulnerable Systems

Application

  • Ibm Tivoli Directory Server 6.0.0.73

  • Ibm Tivoli Directory Server 6.1.0

  • Ibm Tivoli Directory Server 6.1.0.0

  • Ibm Tivoli Directory Server 6.1.0.1

  • Ibm Tivoli Directory Server 6.1.0.10

  • Ibm Tivoli Directory Server 6.1.0.11

  • Ibm Tivoli Directory Server 6.1.0.12

  • Ibm Tivoli Directory Server 6.1.0.13

  • Ibm Tivoli Directory Server 6.1.0.14

  • Ibm Tivoli Directory Server 6.1.0.15

  • Ibm Tivoli Directory Server 6.1.0.17

  • Ibm Tivoli Directory Server 6.1.0.18

  • Ibm Tivoli Directory Server 6.1.0.19

  • Ibm Tivoli Directory Server 6.1.0.2

  • Ibm Tivoli Directory Server 6.1.0.20

  • Ibm Tivoli Directory Server 6.1.0.21

  • Ibm Tivoli Directory Server 6.1.0.22

  • Ibm Tivoli Directory Server 6.1.0.23

  • Ibm Tivoli Directory Server 6.1.0.24

  • Ibm Tivoli Directory Server 6.1.0.25

  • Ibm Tivoli Directory Server 6.1.0.26

  • Ibm Tivoli Directory Server 6.1.0.27

  • Ibm Tivoli Directory Server 6.1.0.28

  • Ibm Tivoli Directory Server 6.1.0.29

  • Ibm Tivoli Directory Server 6.1.0.3

  • Ibm Tivoli Directory Server 6.1.0.30

  • Ibm Tivoli Directory Server 6.1.0.31

  • Ibm Tivoli Directory Server 6.1.0.32

  • Ibm Tivoli Directory Server 6.1.0.33

  • Ibm Tivoli Directory Server 6.1.0.34

  • Ibm Tivoli Directory Server 6.1.0.35

  • Ibm Tivoli Directory Server 6.1.0.36

  • Ibm Tivoli Directory Server 6.1.0.37

  • Ibm Tivoli Directory Server 6.1.0.38

  • Ibm Tivoli Directory Server 6.1.0.39

  • Ibm Tivoli Directory Server 6.1.0.4

  • Ibm Tivoli Directory Server 6.1.0.40

  • Ibm Tivoli Directory Server 6.1.0.41

  • Ibm Tivoli Directory Server 6.1.0.42

  • Ibm Tivoli Directory Server 6.1.0.43

  • Ibm Tivoli Directory Server 6.1.0.44

  • Ibm Tivoli Directory Server 6.1.0.45

  • Ibm Tivoli Directory Server 6.1.0.46

  • Ibm Tivoli Directory Server 6.1.0.47

  • Ibm Tivoli Directory Server 6.1.0.48

  • Ibm Tivoli Directory Server 6.1.0.49

  • Ibm Tivoli Directory Server 6.1.0.5

  • Ibm Tivoli Directory Server 6.1.0.50

  • Ibm Tivoli Directory Server 6.1.0.51

  • Ibm Tivoli Directory Server 6.1.0.52

  • Ibm Tivoli Directory Server 6.1.0.53

  • Ibm Tivoli Directory Server 6.1.0.54

  • Ibm Tivoli Directory Server 6.1.0.55

  • Ibm Tivoli Directory Server 6.1.0.56

  • Ibm Tivoli Directory Server 6.1.0.57

  • Ibm Tivoli Directory Server 6.1.0.58

  • Ibm Tivoli Directory Server 6.1.0.59

  • Ibm Tivoli Directory Server 6.1.0.6

  • Ibm Tivoli Directory Server 6.1.0.60

  • Ibm Tivoli Directory Server 6.1.0.61

  • Ibm Tivoli Directory Server 6.1.0.62

  • Ibm Tivoli Directory Server 6.1.0.63

  • Ibm Tivoli Directory Server 6.1.0.64

  • Ibm Tivoli Directory Server 6.1.0.65

  • Ibm Tivoli Directory Server 6.1.0.66

  • Ibm Tivoli Directory Server 6.1.0.7

  • Ibm Tivoli Directory Server 6.1.0.8

  • Ibm Tivoli Directory Server 6.1.0.9

  • Ibm Tivoli Directory Server 6.2.0.0

  • Ibm Tivoli Directory Server 6.2.0.1

  • Ibm Tivoli Directory Server 6.2.0.10

  • Ibm Tivoli Directory Server 6.2.0.11

  • Ibm Tivoli Directory Server 6.2.0.12

  • Ibm Tivoli Directory Server 6.2.0.13

  • Ibm Tivoli Directory Server 6.2.0.14

  • Ibm Tivoli Directory Server 6.2.0.15

  • Ibm Tivoli Directory Server 6.2.0.19

  • Ibm Tivoli Directory Server 6.2.0.2

  • Ibm Tivoli Directory Server 6.2.0.20

  • Ibm Tivoli Directory Server 6.2.0.21

  • Ibm Tivoli Directory Server 6.2.0.22

  • Ibm Tivoli Directory Server 6.2.0.23

  • Ibm Tivoli Directory Server 6.2.0.24

  • Ibm Tivoli Directory Server 6.2.0.25

  • Ibm Tivoli Directory Server 6.2.0.26

  • Ibm Tivoli Directory Server 6.2.0.27

  • Ibm Tivoli Directory Server 6.2.0.29

  • Ibm Tivoli Directory Server 6.2.0.3

  • Ibm Tivoli Directory Server 6.2.0.30

  • Ibm Tivoli Directory Server 6.2.0.31

  • Ibm Tivoli Directory Server 6.2.0.32

  • Ibm Tivoli Directory Server 6.2.0.33

  • Ibm Tivoli Directory Server 6.2.0.34

  • Ibm Tivoli Directory Server 6.2.0.35

  • Ibm Tivoli Directory Server 6.2.0.36

  • Ibm Tivoli Directory Server 6.2.0.37

  • Ibm Tivoli Directory Server 6.2.0.38

  • Ibm Tivoli Directory Server 6.2.0.39

  • Ibm Tivoli Directory Server 6.2.0.4

  • Ibm Tivoli Directory Server 6.2.0.40

  • Ibm Tivoli Directory Server 6.2.0.41

  • Ibm Tivoli Directory Server 6.2.0.42

  • Ibm Tivoli Directory Server 6.2.0.5

  • Ibm Tivoli Directory Server 6.2.0.6

  • Ibm Tivoli Directory Server 6.2.0.7

  • Ibm Tivoli Directory Server 6.2.0.8

  • Ibm Tivoli Directory Server 6.3.0.0

  • Ibm Tivoli Directory Server 6.3.0.1

  • Ibm Tivoli Directory Server 6.3.0.10

  • Ibm Tivoli Directory Server 6.3.0.11

  • Ibm Tivoli Directory Server 6.3.0.12

  • Ibm Tivoli Directory Server 6.3.0.14

  • Ibm Tivoli Directory Server 6.3.0.15

  • Ibm Tivoli Directory Server 6.3.0.17

  • Ibm Tivoli Directory Server 6.3.0.18

  • Ibm Tivoli Directory Server 6.3.0.19

  • Ibm Tivoli Directory Server 6.3.0.2

  • Ibm Tivoli Directory Server 6.3.0.21

  • Ibm Tivoli Directory Server 6.3.0.22

  • Ibm Tivoli Directory Server 6.3.0.23

  • Ibm Tivoli Directory Server 6.3.0.24

  • Ibm Tivoli Directory Server 6.3.0.25

  • Ibm Tivoli Directory Server 6.3.0.26

  • Ibm Tivoli Directory Server 6.3.0.27

  • Ibm Tivoli Directory Server 6.3.0.28

  • Ibm Tivoli Directory Server 6.3.0.29

  • Ibm Tivoli Directory Server 6.3.0.30

  • Ibm Tivoli Directory Server 6.3.0.31

  • Ibm Tivoli Directory Server 6.3.0.32

  • Ibm Tivoli Directory Server 6.3.0.33

  • Ibm Tivoli Directory Server 6.3.0.34

  • Ibm Tivoli Directory Server 6.3.0.35

  • Ibm Tivoli Directory Server 6.3.0.8

  • Ibm Tivoli Directory Server 6.3.0.9

  • Ibm Tivoli Directory Server 6.3.1.0

  • Ibm Tivoli Directory Server 6.3.1.5

  • Ibm Tivoli Directory Server 6.3.1.6

  • Ibm Tivoli Directory Server 6.3.1.7

  • Ibm Tivoli Directory Server 6.3.1.8

  • Ibm Tivoli Directory Server 6.3.1.9


References

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg21698703

CONFIRM - http://www-01.ibm.com/support/docview.wss?uid=swg21883640

Related Patches

Novell SUSE 2015:10761 java-1_6_0-ibm security update for SLES 11 SP3 i586

Novell SUSE 2015:10761 java-1_6_0-ibm security update for SLES 11 SP3 x86_64

Novell SUSE 2015:10784 java-1_7_0-ibm security update for SLES 11 SP3 i586

Novell SUSE 2015:10784 java-1_7_0-ibm security update for SLES 11 SP3 x86_64


Last Updated: 27 May 2016 11:08:12