IBM Security Bulletin: SMB vulnerabilities in IBM N Series Products

Data ONTAP products implement the SMB protocol. Systems that implement the SMB protocol can be susceptible to one or more man-in-the-middle attacks which when exploited could potentially lead to information disclosure, privilege escalation, or a Denial of Service.

CVE(s): CVE-2016-3997, CVE-2016-3400

Affected product(s) and affected version(s):

Clustered Data ONTAP: 8.2.x;
Data ONTAP operating in 7-Mode: 8.1.x, 8.2.x

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2rAeYi4
X-Force Database: http://ift.tt/2s4DTh4
X-Force Database: http://ift.tt/2rzFecv

The post IBM Security Bulletin: SMB vulnerabilities in IBM N Series Products appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2s4GqYA