IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affects IBM Sterling Connect:Direct for Microsoft Windows (CVE-2016-0702, CVE-2016-0799)

OpenSSL vulnerabilities were disclosed on 1 March 2016 by the OpenSSL Project. OpenSSL is used by IBM Sterling Connect:Direct for Microsoft Windows. IBM Sterling Connect:Direct for Microsoft Windows has addressed the applicable CVEs.

CVE(s): CVE-2016-0799, CVE-2016-0702

Affected product(s) and affected version(s):

IBM Sterling Connect:Direct for Microsoft Windows 4.5.00
IBM Sterling Connect:Direct for Microsoft Windows 4.5.01
IBM Sterling Connect:Direct for Microsoft Windows 4.6.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/1TPZe7p
X-Force Database: http://ift.tt/1N2N4p5
X-Force Database: http://ift.tt/1Tg5v6h



from IBM Product Security Incident Response Team http://ift.tt/1TJLAgF