IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM PureApplication System. (CVE-2016-0701, CVE-2015-3197)

OpenSSL vulnerabilities were disclosed on January 28, 2016 by the OpenSSL Project. OpenSSL is used by IBM PureApplication System. IBM PureApplication System has addressed the applicable CVEs.

CVE(s): CVE-2016-0701, CVE-2015-3197

Affected product(s) and affected version(s):

IBM PureApplication System V2.2
IBM PureApplication System V2.1
IBM PureApplication System V2.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/28MbdyN
X-Force Database: http://ift.tt/1W1VuQf
X-Force Database: http://ift.tt/1rd26hw



from IBM Product Security Incident Response Team http://ift.tt/28Plw8P