IBM Security Bulletin: Vulnerability in OpenSSL affects IBM Flex System Networking Switch products (CVE-2016-2183)

OpenSSL vulnerabilities were disclosed on September 22 and 26, 2016 by the OpenSSL Project. OpenSSL is used by IBM Flex System Networking Switch products. IBM Flex System Networking Switch products have addressed the applicable CVE. Vulnerability Details:

CVE(s): CVE-2016-2183

Affected product(s) and affected version(s):

ProductAffected Version
IBM Flex System Fabric EN4093R 10Gb Scalable Switch7.8.15.0
IBM Flex System Fabric CN4093 10Gb Converged Scalable Switch7.8.15.0
IBM Flex System Fabric SI4093 System Interconnect Module7.8.15.0
IBM Flex System EN2092 1Gb Ethernet Scalable Switch7.8.15.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2kB3Zlv
X-Force Database: http://ift.tt/2fn630l



from IBM Product Security Incident Response Team http://ift.tt/2kB9kx2