IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Enterprise Content Management System Monitor (CVE-2016-6304, CVE-2016-2177)
OpenSSL vulnerabilities were disclosed on September 22 and 26, 2016 by the OpenSSL Project. OpenSSL is used by IBM Enterprise Content Management System Monitor. IBM Enterprise Content Management System Monitor has addressed the applicable CVEs.
CVE(s): CVE-2016-6304, CVE-2016-2177
Affected product(s) and affected version(s):
IBM Enterprise Content Management System Monitor v 5.1.0
IBM Enterprise Content Management System Monitor v 5.2.0
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2gwiDYK
X-Force Database: http://ift.tt/2dmY7tO
X-Force Database: http://ift.tt/2aPXjQq
from IBM Product Security Incident Response Team http://ift.tt/2hAOFrh