IBM Security Bulletin: A vulnerability in Network Security Services (NSS) affects the IBM FlashSystem model V9000 (CVE-2016-1978)

There is a vulnerability in open source Network Security Services (NSS) to which the IBM® FlashSystem™ V9000 is susceptible. An exploit of this vulnerability could allow a remote attacker to execute arbitrary code on the vulnerable system or cause a denial of service.

CVE(s): CVE-2016-1978

Affected product(s) and affected version(s):

FlashSystem V9000 including machine type and models (MTMs) for all available code levels. MTMs affected include 9846-AE2, 9848-AE2, 9846-AC2, and 9848-AC2

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2cxsQn9
X-Force Database: http://ift.tt/1TuzxZZ



from IBM Product Security Incident Response Team http://ift.tt/2c9VT2i