IBM Security Bulletin: Vulnerabilities in PAM affect Power Hardware Management Console (‪CVE-2013-7041 and CVE-2015-3238‬)

PAM is used by Power Hardware Management Console (HMC). HMC has addressed the applicable CVEs.

CVE(s): CVE-2013-7041, CVE-2015-3238

Affected product(s) and affected version(s):

Power HMC V7.7.9.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www.ibm.com/support/docview.wss?uid=nas8N1021702
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/89588
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/106368



from IBM Product Security Incident Response Team https://www.ibm.com/blogs/psirt/ibm-security-bulletin-vulnerabilities-in-pam-affect-power-hardware-management-console-%e2%80%aacve-2013-7041-and-cve-2015-3238%e2%80%ac/