IBM Security Bulletin: Vulnerabilities in NTP affect IBM Flex System FC3171 8Gb SAN Switch & SAN Pass-thru Firmware, QLogic 8Gb Intelligent Pass-thru Module & SAN Switch Module and QLogic Virtual Fabric Extension Module for IBM BladeCenter

The switch firmware deliverables listed below have addressed the applicable NTP CVEs.

CVE(s): CVE-2014-9750, CVE-2014-9751, CVE-2015-7974, CVE-2015-7973, CVE-2015-7979, CVE-2015-8138

Affected product(s) and affected version(s):

ProductAffected Version
IBM Flex System FC3171 8Gb SAN Switch
IBM Flex System FC3171 8Gb SAN Pass-thru
9.1
QLogic 8Gb Intelligent Pass-thru Module & SAN Switch Module for
BladeCenter
7.10
QLogic Virtual Fabric Extension Module for IBM BladeCenter9.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/29A0k5y
X-Force Database: http://ift.tt/1Wbbyvt
X-Force Database: http://ift.tt/1T3Tsw2
X-Force Database: http://ift.tt/29n0h9r
X-Force Database: http://ift.tt/29A0KbQ for the current score
X-Force Database: http://ift.tt/29n0gCq
X-Force Database: http://ift.tt/1L8LC38



from IBM Product Security Incident Response Team http://ift.tt/29n0iKC