IBM Security Bulletin: Vulnerability in OpenSSL affects IBM System Networking RackSwitch products (CVE-2016-2183)

OpenSSL vulnerabilities were disclosed on September 22 and 26, 2016 by the OpenSSL Project. OpenSSL is used by IBM System Networking RackSwitch products. IBM System Networking RackSwitch products have addressed the applicable CVE. Vulnerability Details:

CVE(s): CVE-2016-2183

Affected product(s) and affected version(s):

IBM System Networking RackSwitchAffected Version
IBM RackSwitch G80527.9
IBM RackSwitch G80527.11
IBM RackSwitch G8124/G8124-E7.9
IBM RackSwitch G8124/G8124-E7.11
IBM RackSwitch G82647.9
IBM RackSwitch G82647.11
IBM RackSwitch G8264CS7.8
IBM RackSwitch G8264T7.9
IBM RackSwitch G83167.9
IBM RackSwitch G83327.7

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2kBcT6r
X-Force Database: http://ift.tt/2fn630l



from IBM Product Security Incident Response Team http://ift.tt/2kB8VL0