IBM Security Bulletin: Vulnerabilities in OpenSSL affect Power Hardware Management Console (CVE-2016-2180, CVE-2016-2182, CVE-2016-6306)

Open SSL is used by Power Hardware Management Console (HMC). HMC has addressed the applicable CVEs.

CVE(s): CVE-2016-2180, CVE-2016-2182, CVE-2016-6306

Affected product(s) and affected version(s):

Power HMC V7.9.0.0
Power HMC V8.2.0.0
Power HMC V8.3.0.0
Power HMC V8.4.0.0
Power HMC V8.5.0.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2hjR9q7
X-Force Database: http://ift.tt/2dmWOvf
X-Force Database: http://ift.tt/2dR45pA
X-Force Database: http://ift.tt/2dmYpRr



from IBM Product Security Incident Response Team http://ift.tt/2gUTYkb