LOGJAM: TLS connections which support export grade DHE key-exchange are vulnerable to MITM attacks
Published May 21, 2015
3.7
LOWCVSS 3.1
EPSS 99.86%
Description
The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then rewriting a ServerHello with DHE_EXPORT replaced by DHE, aka the "Logjam" issue.
Affected products
No data.
Configuration 1
Configuration 2
- 12.04
- 14.04
- 14.10
- 15.04
Configuration 4
- 8.5
Configuration 6
- 7.0
- 8.0
Configuration 7
- 1.6.0
- 1.7.0
- 1.7.0
- 1.8.0
- 1.8.0
- 1.6.0
- 1.7.0
- 1.7.0
- 1.8.0
- 1.8.0
Configuration 8
- 12
- 11.0
- 12
- 12
Configuration 10
- 3.19
Configuration 11
- ≤ 1121
Configuration 12
- n/a
- n/a
- n/a
- n/a
- n/a
Configuration 13
- 38.1.0
- 39.0
- 31.8
- 2.35
- 31.8
- 38.1
- 2.2
No data.
Oracle Java for Red Hat Enterprise Linux 5
java-1.6.0-sun-1:1.6.0.101-1jpp.1.el5_11
Fixed · RHSA-2015:1243
Oracle Java for Red Hat Enterprise Linux 5
java-1.7.0-oracle-1:1.7.0.85-1jpp.1.el5_11
Fixed · RHSA-2015:1242
Oracle Java for Red Hat Enterprise Linux 6
java-1.6.0-sun-1:1.6.0.101-1jpp.1.el6_6
Fixed · RHSA-2015:1243
Oracle Java for Red Hat Enterprise Linux 6
java-1.7.0-oracle-1:1.7.0.85-1jpp.2.el6_6
Fixed · RHSA-2015:1242
Oracle Java for Red Hat Enterprise Linux 6
java-1.8.0-oracle-1:1.8.0.51-1jpp.2.el6_6
Fixed · RHSA-2015:1241
Oracle Java for Red Hat Enterprise Linux 7
java-1.6.0-sun-1:1.6.0.101-1jpp.1.el7_1
Fixed · RHSA-2015:1243
Oracle Java for Red Hat Enterprise Linux 7
java-1.7.0-oracle-1:1.7.0.85-1jpp.2.el7_1
Fixed · RHSA-2015:1242
Oracle Java for Red Hat Enterprise Linux 7
java-1.8.0-oracle-1:1.8.0.51-1jpp.2.el7_1
Fixed · RHSA-2015:1241
Red Hat Enterprise Linux 5
java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el5_11
Fixed · RHSA-2015:1526
Red Hat Enterprise Linux 5
java-1.7.0-openjdk-1:1.7.0.85-2.6.1.3.el5_11
Fixed · RHSA-2015:1230
Red Hat Enterprise Linux 5
openssl-0:0.9.8e-36.el5_11
Fixed · RHSA-2015:1197
Red Hat Enterprise Linux 5 Supplementary
java-1.5.0-ibm-1:1.5.0.16.13-1jpp.3.el5
Fixed · RHSA-2015:1544
Red Hat Enterprise Linux 5 Supplementary
java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el5
Fixed · RHSA-2015:1486
Red Hat Enterprise Linux 5 Supplementary
java-1.7.0-ibm-1:1.7.0.9.10-1jpp.2.el5
Fixed · RHSA-2015:1488
Red Hat Enterprise Linux 6
java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el6_7
Fixed · RHSA-2015:1526
Red Hat Enterprise Linux 6
java-1.7.0-openjdk-1:1.7.0.85-2.6.1.3.el6_6
Fixed · RHSA-2015:1229
Red Hat Enterprise Linux 6
java-1.8.0-openjdk-1:1.8.0.51-0.b16.el6_6
Fixed · RHSA-2015:1228
Red Hat Enterprise Linux 6
nss-0:3.19.1-3.el6_6
Fixed · RHSA-2015:1185
Red Hat Enterprise Linux 6
nss-util-0:3.19.1-1.el6_6
Fixed · RHSA-2015:1185
Red Hat Enterprise Linux 6
openssl-0:1.0.1e-30.el6_6.9
Fixed · RHSA-2015:1072
Red Hat Enterprise Linux 6 Supplementary
java-1.5.0-ibm-1:1.5.0.16.13-1jpp.3.el6_7
Fixed · RHSA-2015:1544
Red Hat Enterprise Linux 6 Supplementary
java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el6_7
Fixed · RHSA-2015:1486
Red Hat Enterprise Linux 6 Supplementary
java-1.7.1-ibm-1:1.7.1.3.10-1jpp.3.el6_7
Fixed · RHSA-2015:1485
Red Hat Enterprise Linux 7
java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el7_1
Fixed · RHSA-2015:1526
Red Hat Enterprise Linux 7
java-1.7.0-openjdk-1:1.7.0.85-2.6.1.2.ael7b_1
Fixed · RHSA-2015:1229
Red Hat Enterprise Linux 7
java-1.8.0-openjdk-1:1.8.0.51-1.b16.ael7b_1
Fixed · RHSA-2015:1228
Red Hat Enterprise Linux 7
nss-0:3.19.1-3.ael7b_1
Fixed · RHSA-2015:1185
Red Hat Enterprise Linux 7
nss-util-0:3.19.1-1.ael7b_1
Fixed · RHSA-2015:1185
Red Hat Enterprise Linux 7
openssl-1:1.0.1e-42.ael7b_1.6
Fixed · RHSA-2015:1072
Red Hat JBoss Enterprise Application Platform 6.4
openssl
Fixed · RHSA-2016:2056
Red Hat JBoss Web Server 3.0
n/a
Fixed · RHSA-2016:1624
Red Hat Satellite 5.6
java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el5
Fixed · RHSA-2015:1604
Red Hat Satellite 5.7
java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el6_7
Fixed · RHSA-2015:1604
Supplementary for Red Hat Enterprise Linux 7
java-1.7.1-ibm-1:1.7.1.3.10-1jpp.1.ael7b_1
Fixed · RHSA-2015:1485
Red Hat Enterprise Linux 5
nss
Affected
Red Hat Enterprise Linux 5
openssl097a
Will not fix
Red Hat Enterprise Linux 6
openssl098e
Will not fix
Red Hat Enterprise Linux 7
openssl098e
Will not fix
Red Hat JBoss Enterprise Web Server 1
openssl
Will not fix
Red Hat JBoss Enterprise Web Server 2
openssl
Affected
Red Hat JBoss Enterprise Web Server 3
openssl
Affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Oracle Java for Red Hat Enterprise Linux 5 | java-1.6.0-sun-1:1.6.0.101-1jpp.1.el5_11 | Fixed | RHSA-2015:1243 |
| Oracle Java for Red Hat Enterprise Linux 5 | java-1.7.0-oracle-1:1.7.0.85-1jpp.1.el5_11 | Fixed | RHSA-2015:1242 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.6.0-sun-1:1.6.0.101-1jpp.1.el6_6 | Fixed | RHSA-2015:1243 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.7.0-oracle-1:1.7.0.85-1jpp.2.el6_6 | Fixed | RHSA-2015:1242 |
| Oracle Java for Red Hat Enterprise Linux 6 | java-1.8.0-oracle-1:1.8.0.51-1jpp.2.el6_6 | Fixed | RHSA-2015:1241 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.6.0-sun-1:1.6.0.101-1jpp.1.el7_1 | Fixed | RHSA-2015:1243 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.7.0-oracle-1:1.7.0.85-1jpp.2.el7_1 | Fixed | RHSA-2015:1242 |
| Oracle Java for Red Hat Enterprise Linux 7 | java-1.8.0-oracle-1:1.8.0.51-1jpp.2.el7_1 | Fixed | RHSA-2015:1241 |
| Red Hat Enterprise Linux 5 | java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el5_11 | Fixed | RHSA-2015:1526 |
| Red Hat Enterprise Linux 5 | java-1.7.0-openjdk-1:1.7.0.85-2.6.1.3.el5_11 | Fixed | RHSA-2015:1230 |
| Red Hat Enterprise Linux 5 | openssl-0:0.9.8e-36.el5_11 | Fixed | RHSA-2015:1197 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.5.0-ibm-1:1.5.0.16.13-1jpp.3.el5 | Fixed | RHSA-2015:1544 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el5 | Fixed | RHSA-2015:1486 |
| Red Hat Enterprise Linux 5 Supplementary | java-1.7.0-ibm-1:1.7.0.9.10-1jpp.2.el5 | Fixed | RHSA-2015:1488 |
| Red Hat Enterprise Linux 6 | java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el6_7 | Fixed | RHSA-2015:1526 |
| Red Hat Enterprise Linux 6 | java-1.7.0-openjdk-1:1.7.0.85-2.6.1.3.el6_6 | Fixed | RHSA-2015:1229 |
| Red Hat Enterprise Linux 6 | java-1.8.0-openjdk-1:1.8.0.51-0.b16.el6_6 | Fixed | RHSA-2015:1228 |
| Red Hat Enterprise Linux 6 | nss-0:3.19.1-3.el6_6 | Fixed | RHSA-2015:1185 |
| Red Hat Enterprise Linux 6 | nss-util-0:3.19.1-1.el6_6 | Fixed | RHSA-2015:1185 |
| Red Hat Enterprise Linux 6 | openssl-0:1.0.1e-30.el6_6.9 | Fixed | RHSA-2015:1072 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.5.0-ibm-1:1.5.0.16.13-1jpp.3.el6_7 | Fixed | RHSA-2015:1544 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el6_7 | Fixed | RHSA-2015:1486 |
| Red Hat Enterprise Linux 6 Supplementary | java-1.7.1-ibm-1:1.7.1.3.10-1jpp.3.el6_7 | Fixed | RHSA-2015:1485 |
| Red Hat Enterprise Linux 7 | java-1.6.0-openjdk-1:1.6.0.36-1.13.8.1.el7_1 | Fixed | RHSA-2015:1526 |
| Red Hat Enterprise Linux 7 | java-1.7.0-openjdk-1:1.7.0.85-2.6.1.2.ael7b_1 | Fixed | RHSA-2015:1229 |
| Red Hat Enterprise Linux 7 | java-1.8.0-openjdk-1:1.8.0.51-1.b16.ael7b_1 | Fixed | RHSA-2015:1228 |
| Red Hat Enterprise Linux 7 | nss-0:3.19.1-3.ael7b_1 | Fixed | RHSA-2015:1185 |
| Red Hat Enterprise Linux 7 | nss-util-0:3.19.1-1.ael7b_1 | Fixed | RHSA-2015:1185 |
| Red Hat Enterprise Linux 7 | openssl-1:1.0.1e-42.ael7b_1.6 | Fixed | RHSA-2015:1072 |
| Red Hat JBoss Enterprise Application Platform 6.4 | openssl | Fixed | RHSA-2016:2056 |
| Red Hat JBoss Web Server 3.0 | n/a | Fixed | RHSA-2016:1624 |
| Red Hat Satellite 5.6 | java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el5 | Fixed | RHSA-2015:1604 |
| Red Hat Satellite 5.7 | java-1.6.0-ibm-1:1.6.0.16.7-1jpp.1.el6_7 | Fixed | RHSA-2015:1604 |
| Supplementary for Red Hat Enterprise Linux 7 | java-1.7.1-ibm-1:1.7.1.3.10-1jpp.1.ael7b_1 | Fixed | RHSA-2015:1485 |
| Red Hat Enterprise Linux 5 | nss | Affected | n/a |
| Red Hat Enterprise Linux 5 | openssl097a | Will not fix | n/a |
| Red Hat Enterprise Linux 6 | openssl098e | Will not fix | n/a |
| Red Hat Enterprise Linux 7 | openssl098e | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 1 | openssl | Will not fix | n/a |
| Red Hat JBoss Enterprise Web Server 2 | openssl | Affected | n/a |
| Red Hat JBoss Enterprise Web Server 3 | openssl | Affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue affects the version of openssl and nss libraries as shipped with Red Hat Enterprise Linux 4, 5, 6 and 7. More information about this flaw is available at: https://bugzilla.redhat.com/show_bug.cgi?id=1223211#c4 and https://bugzilla.redhat.com/show_bug.cgi?id=1223211#c5. Red Hat Enterprise Linux 4 is in Extended Life Cycle phase of the support and maintenance life cycle. This issue is not currently planned to be addressed in future updates of Red Hat Enterprise Linux 4.
Metrics
No CVSS v4.0 score for this CVE.
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N
AV:N/AC:M/Au:N/C:N/I:P/A:N
This CVE is not in the KEV list.
CISA SSVC (Vulnrichment)
Stakeholder-Specific Vulnerability Categorization from CISA ADP.
Exploitation
NoneAutomatable
NoTechnical Impact
PartialDecision
n/aAssessed May 27, 2026 · SSVC 2.0.3
Estimated probability of exploitation in the wild in the next 30 days (FIRST EPSS). As of Oct 1, 2026.
Score over time
2022–2026- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Percentile over time
- EPSS v2
- EPSS v3
- EPSS v4
- EPSS v5
Table of values (15 key points)
Flat stretches are collapsed; showing up to 120 newest points.
| Date | Score | Percentile | Model |
|---|---|---|---|
| Oct 1, 2026 | 99.86% (0.99860) | 99.96th | v5 (v2026.06.15) |
| Jun 15, 2026 | 99.86% (0.99860) | 99.96th | v5 (v2026.06.15) |
| May 30, 2026 | 92.35% (0.92346) | 99.74th | v4 (v2025.03.14) |
| Mar 17, 2025 | 93.97% (0.93970) | 99.88th | v4 (v2025.03.14) |
| Dec 12, 2024 | 97.36% (0.97358) | 99.93th | v3 (v2023.03.01) |
| Apr 27, 2024 | 97.41% (0.97405) | 99.92th | v3 (v2023.03.01) |
| Mar 10, 2024 | 97.46% (0.97464) | 99.95th | v3 (v2023.03.01) |
| Jul 8, 2023 | 97.49% (0.97493) | 99.96th | v3 (v2023.03.01) |
| May 8, 2023 | 97.53% (0.97528) | 99.98th | v3 (v2023.03.01) |
| Mar 7, 2023 | 97.37% (0.97369) | 99.79th | v3 (v2023.03.01) |
| Mar 6, 2023 | 85.79% (0.85791) | 99.69th | v2 (v2022.01.01) |
| Dec 19, 2022 | 85.79% (0.85791) | 99.68th | v2 (v2022.01.01) |
| Oct 8, 2022 | 84.62% (0.84616) | 99.63th | v2 (v2022.01.01) |
| Mar 23, 2022 | 83.62% (0.83617) | 99.55th | v2 (v2022.01.01) |
| Feb 4, 2022 | 82.65% (0.82653) | 99.49th | v2 (v2022.01.01) |
References (222)
- http://aix.software.ibm.com/aix/efixes/security/sendmail_advisory2.asc Third Party Advisory
- http://fortiguard.com/advisory/2015-07-09-cve-2015-1793-openssl-alternative-chains-certificate-forgery Third Party Advisory
- http://ftp.netbsd.org/pub/NetBSD/security/advisories/NetBSD-SA2015-008.txt.asc vendor-advisoryMailing ListThird Party Advisory
- http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04876402 Third Party Advisory
- http://h20564.www2.hpe.com/hpsc/doc/public/display?docId=emr_na-c04949778 Third Party Advisory
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10681 Third Party Advisory
- http://kb.juniper.net/InfoCenter/index?page=content&id=JSA10727 Third Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00001.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.apple.com/archives/security-announce/2015/Jun/msg00002.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159314.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/159351.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.fedoraproject.org/pipermail/package-announce/2015-June/160117.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00023.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00024.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-06/msg00026.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00001.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00003.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00004.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00005.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00006.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00007.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00037.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00039.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00040.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00046.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00047.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00021.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00017.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00001.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00031.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00032.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00037.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00039.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2016-01/msg00040.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-07/msg00016.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2015-10/msg00011.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2016-02/msg00094.html vendor-advisoryMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-updates/2016-02/msg00097.html vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143506486712441&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143557934009303&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143558092609708&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143628304012255&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143637549705650&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143655800220052&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=143880121627664&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144043644216842&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144050121701297&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144060576831314&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144060606031437&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144061542602287&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144069189622016&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144102017024820&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144104533800819&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=144493176821532&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://marc.info/?l=bugtraq&m=145409266329539&w=2 vendor-advisoryMailing ListThird Party Advisory
- http://openwall.com/lists/oss-security/2015/05/20/8 mailing-listMailing ListThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1072.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1185.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1197.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1228.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1229.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1230.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1241.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1242.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1243.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1485.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1486.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1488.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1526.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1544.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2015-1604.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-1624.html vendor-advisoryThird Party Advisory
- http://rhn.redhat.com/errata/RHSA-2016-2056.html vendor-advisoryThird Party Advisory
- http://support.apple.com/kb/HT204941 Third Party Advisory
- http://support.apple.com/kb/HT204942 Third Party Advisory
- http://support.citrix.com/article/CTX201114 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959111 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959195 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959325 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959453 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959481 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959517 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959530 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959539 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959636 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21959812 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21960191 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21961717 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21962455 Third Party Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg21962739 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21958984 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21959132 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21960041 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21960194 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21960380 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21960418 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21962816 Third Party Advisory
- http://www-304.ibm.com/support/docview.wss?uid=swg21967893 Third Party Advisory
- http://www.debian.org/security/2015/dsa-3287 vendor-advisoryThird Party Advisory
- http://www.debian.org/security/2015/dsa-3300 vendor-advisoryThird Party Advisory
- http://www.debian.org/security/2015/dsa-3316 vendor-advisoryThird Party Advisory
- http://www.debian.org/security/2015/dsa-3324 vendor-advisoryThird Party Advisory
- http://www.debian.org/security/2015/dsa-3339 vendor-advisoryThird Party Advisory
- http://www.debian.org/security/2016/dsa-3688 vendor-advisoryThird Party Advisory
- http://www.fortiguard.com/advisory/2015-05-20-logjam-attack Third Party Advisory
- http://www.mozilla.org/security/announce/2015/mfsa2015-70.html Third Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpuapr2016v3-2985753.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/security-advisory/cpujul2016-2881720.html PatchThird Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjan2016-2867206.html Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujan2016-2367955.html Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpujul2015-2367936.html Third Party Advisory
- http://www.oracle.com/technetwork/topics/security/cpuoct2015-2367953.html Third Party Advisory
- http://www.securityfocus.com/bid/74733 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/91787 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032474 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032475 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032476 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032637 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032645 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032647 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032648 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032649 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032650 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032651 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032652 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032653 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032654 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032655 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032656 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032688 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032699 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032702 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032727 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032759 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032777 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032778 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032783 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032784 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032856 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032864 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032865 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032871 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032884 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032910 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032932 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1032960 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033019 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033064 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033065 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033067 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033208 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033209 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033210 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033222 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033341 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033385 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033416 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033430 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033433 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033513 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033760 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033891 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1033991 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1034087 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1034728 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1034884 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1036218 vdb-entryThird Party AdvisoryVDB Entry
- http://www.securitytracker.com/id/1040630 vdb-entryThird Party AdvisoryVDB Entry
- http://www.solarwinds.com/documentation/storage/storagemanager/docs/ReleaseNotes/releaseNotes.htm Third Party Advisory
- http://www.ubuntu.com/usn/USN-2656-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-2656-2 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-2673-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-2696-1 vendor-advisoryThird Party Advisory
- http://www.ubuntu.com/usn/USN-2706-1 vendor-advisoryThird Party Advisory
- https://access.redhat.com/articles/1456263
- https://access.redhat.com/security/cve/CVE-2015-4000 Vendor Advisory
- https://blog.cloudflare.com/logjam-the-latest-tls-vulnerability-explained/ Third Party Advisory
- https://bto.bluecoat.com/security-advisory/sa98 Third Party Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1138554 Issue TrackingThird Party Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1223211 Issue Tracking
- https://cert-portal.siemens.com/productcert/pdf/ssa-412672.pdf Third Party Advisory
- https://developer.mozilla.org/en-US/docs/Mozilla/Projects/NSS/NSS_3.19.1_release_notes Third Party Advisory
- https://h20564.www2.hp.com/hpsc/doc/public/display?docId=emr_na-c04718196 vendor-advisoryThird Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04770140 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04772190 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773119 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04773241 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04832246 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04918839 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04923929 Third Party Advisory
- https://h20564.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04926789 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04740527 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c04953655 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05045763 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05128722 Third Party Advisory
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05193083 Third Party Advisory
- https://help.ecostruxureit.com/display/public/UADCO8x/StruxureWare+Data+Center+Operation+Software+Vulnerability+Fixes Third Party Advisory
- https://kc.mcafee.com/corporate/index?page=content&id=SB10122 Third Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2015-4000
- https://openssl.org/news/secadv/20150611.txt Vendor Advisory
- https://puppet.com/security/cve/CVE-2015-4000 Third Party Advisory
- https://security.gentoo.org/glsa/201506-02 vendor-advisoryThird Party Advisory
- https://security.gentoo.org/glsa/201512-10 vendor-advisoryThird Party Advisory
- https://security.gentoo.org/glsa/201603-11 vendor-advisoryThird Party Advisory
- https://security.gentoo.org/glsa/201701-46 vendor-advisoryThird Party Advisory
- https://security.netapp.com/advisory/ntap-20150619-0001/ Third Party Advisory
- https://support.citrix.com/article/CTX216642 Third Party Advisory
- https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03831en_us Third Party Advisory
- https://weakdh.org/ Third Party Advisory
- https://weakdh.org/imperfect-forward-secrecy.pdf Third Party Advisory
- https://www-304.ibm.com/support/docview.wss?uid=swg21959745 Third Party Advisory
- https://www-947.ibm.com/support/entry/portal/docdisplay?lndocid=MIGR-5098403 Third Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2015-4000
- https://www.openssl.org/blog/blog/2015/05/20/logjam-freak-upcoming-changes/ Vendor Advisory
- https://www.openssl.org/news/secadv_20150611.txt Vendor Advisory
- https://www.oracle.com/security-alerts/cpujan2021.html Third Party Advisory
- https://www.suse.com/security/cve/CVE-2015-4000.html Third Party Advisory
Change history (0)
No recorded changes yet.