IBM Security Bulletin: Vulnerabilities in OpenSSL affect Power Hardware Management Console (CVE-2016-8610 and CVE-2017-3731 )

OpenSSL is used by Power Hardware Management Console (HMC). HMC has addressed the applicable CVEs.

CVE(s): CVE-2016-8610, CVE-2017-3731

Affected product(s) and affected version(s):

Power HMC V8.8.3.0
Power HMC V8.8.4.0
Power HMC V8.8.5.0
Power HMC V8.8.6.0

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2p9UNdX
X-Force Database: http://ift.tt/2hNr07D
X-Force Database: http://ift.tt/2knsB3D

The post IBM Security Bulletin: Vulnerabilities in OpenSSL affect Power Hardware Management Console (CVE-2016-8610 and CVE-2017-3731 ) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2ohN7SS