IBM Security Bulletin: A vulnerability in crypto++ affects PowerKVM (CVE-2016-3995)

PowerKVM is affected by a vulnerability in crypto++ (aka cryptopp). This vulnerability is now fixed.

CVE(s): CVE-2016-3995

Affected product(s) and affected version(s):

PowerKVM 2.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2dNrbdr
X-Force Database: http://ift.tt/2dv9hRt



from IBM Product Security Incident Response Team http://ift.tt/2dNpooG