IBM Security Bulletin: Denial of service vulnerability in OpenSSL affects IBM InfoSphere Master Data Management (CVE-2016-8610)

IBM Initiate Master Data Service and IBM InfoSphere Master Data Management are vulnerable to a OpenSSL denial of service attack and could cause the application to stop responding.

CVE(s): CVE-2016-8610

Affected product(s) and affected version(s):

This vulnerability is known to affect the following offerings:

IBM Initiate Master Data Service versions 10.0 and 10.1

IBM InfoSphere Master Data Management Standard/Advanced Edition version 11.0, 11.3, 11.4, 11.5, and 11.6.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2pCPILv
X-Force Database: http://ift.tt/2hNr07D



from IBM Product Security Incident Response Team http://ift.tt/2pCUetv