IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Systems Director .

There are multiple vulnerabilities in Openssl that is used by IBM Systems Director Platform Agent. These OpenSSL vulnerabilities were disclosed in September 2016 and October 2016 by the OpenSSL Project.

CVE(s): CVE-2016-2182, CVE-2016-2180, CVE-2016-2177, CVE-2016-2178, CVE-2016-6306, CVE-2016-6304, CVE-2016-2183, CVE-2016-8610

Affected product(s) and affected version(s):

From the IBM System Director command line enter smcli lsver to determine the level of IBM System Director installed.

IBM Systems Director:

  • 6.3.5.0
  • 6.3.6.0
  • 6.3.7.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2kC8GLr
X-Force Database: http://ift.tt/2dR45pA
X-Force Database: http://ift.tt/2dmWOvf
X-Force Database: http://ift.tt/2aPXjQq
X-Force Database: http://ift.tt/2asKHex
X-Force Database: http://ift.tt/2dmYpRr
X-Force Database: http://ift.tt/2dmY7tO
X-Force Database: http://ift.tt/2dR3VyC
X-Force Database: http://ift.tt/2hNr07D

The post IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Systems Director . appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2ktTapv