IBM Support

Resolving JazzSM DASH Vulnerability by Plugin 42873 SSL Medium Strength Cipher Suites Supported (SWEET32)

How To


Summary

The vulnerability by plugin 42873 SSL Medium Strength Cipher Suites Supported (SWEET32) is an attack on 64-bit block ciphers in TLS or SSL ciphers that offer medium strength encryption, which regard as those with key lengths at least 56 bits and less than 112 bits.

The SWEET32 vulnerability could allow an attacker to obtain sensitive information.

This vulnerability is inherited by JazzSM DASH from WebSphere Application Server.

This does not occur on WebSphere Application Server from 8.5.5.12 or later.

More information from CVEID: CVE-2016-2183
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-2183

Document Location

Worldwide

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSEKCU","label":"Jazz for Service Management"},"Component":"","Platform":[{"code":"PF016","label":"Linux"}],"Version":"1.1.3.0;1.1.3.1","Edition":"","Line of Business":{"code":"LOB45","label":"Automation"}}]

Log InLog in to view more of this document

This document has the abstract of a technical article that is available to authorized users once you have logged on. Please use Log in button above to access the full document. After log in, if you do not have the right authorization for this document, there will be instructions on what to do next.

Document Information

Modified date:
22 November 2019

UID

ibm11111005