IBM Security Bulletin: Vulnerabilities in krb5 affect PowerKVM (CVE-2016-3119, CVE-2016-3120)

PowerKVM is affected by vulnerabilities in MIT Kerberos (krb5). IBM has now addressed these vulnerabilities.

CVE(s): CVE-2016-3120, CVE-2016-3119

Affected product(s) and affected version(s):

PowerKVM 2.1 and PowerKVM 3.1.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2fJYt1N
X-Force Database: http://ift.tt/2gQ6Dl8
X-Force Database: http://ift.tt/2fJSav6



from IBM Product Security Incident Response Team http://ift.tt/2gQ0DJg