CVE-2014-0852 Information
Feb 14, 2021
cve
Description
IBM WebSphere DataPower SOA appliances through 4.0.2.15 5.x through 5.0.0.17 6.0.0.x through 6.0.0.9 and 6.0.1.x through 6.0.1.5 make it easier for remote attackers to obtain a PreMasterSecret value and defeat cryptographic protection mechanisms by sending a large number of requests in an SSL/TLS side-channel timing attack.
Reference
http://secunia.com/advisories/60112 http://www-01.ibm.com/support/docview.wss?uid=swg1IT01111 http://www-01.ibm.com/support/docview.wss?uid=swg21678204 https://exchange.xforce.ibmcloud.com/vulnerabilities/90753
Share on: