IBM Security Bulletin: Vulnerabilities in libxml2 affect IBM Flex System Networking Switch products

IBM Flex System Networking Switch products have addressed the following vulnerabilities in libxml2.

CVE(s): CVE-2016-3627, CVE-2015-8806, CVE-2016-2073, CVE-2016-3705, CVE-2016-4447, CVE-2016-4449, CVE-2016-4483

Affected product(s) and affected version(s):

ProductAffected Version
IBM Flex System Fabric EN4093R 10Gb Scalable Switch
(ibm_fw_scsw_en4093r-7.8.14.0_anyos_noarch)
7.8.14.0
IBM Flex System Fabric CN4093 10Gb Converged Scalable Switch
(ibm_fw_scsw_cn4093-7.8.14.0_anyos_noarch)
7.8.14.0
IBM Flex System Fabric SI4093 System Interconnect Module
(ibm_fw_scsw_si4093-7.8.14.0_anyos_noarch)
7.8.14.0
IBM Flex System EN2092 1Gb Ethernet Scalable Switch
(ibm_fw_scsw_en2092-7.8.14.0_anyos_noarch)
7.8.14.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cAC5SH
X-Force Database: http://ift.tt/2cAAVXf
X-Force Database: http://ift.tt/2cgTxhp
X-Force Database: http://ift.tt/1Lltuh8
X-Force Database: http://ift.tt/2cgSU7R
X-Force Database: http://ift.tt/2cAC4xW
X-Force Database: http://ift.tt/2cgSNsM
X-Force Database: http://ift.tt/2cABv7s



from IBM Product Security Incident Response Team http://ift.tt/2cgSRsz