IBM Security Bulletin: IBM InfoSphere Master Data Management is vulnerable to multiple OpenSSL vulnerabilities (CVE-2016-7055, CVE-2017-3730, CVE-2017-3731, CVE-2017-3732)

IBM InfoSphere Master Data Management is vulnerable to multiple OpenSSL vulnerabilities that could cause the application to crash, an attacker to obtain information about the private key, or cause a denial of service.

CVE(s): CVE-2017-3730, CVE-2017-3731, CVE-2017-3732, CVE-2016-7055

Affected product(s) and affected version(s):

This vulnerability is known to affect the following offerings:

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2f8yVMd
X-Force Database: http://ift.tt/2kDB4yh
X-Force Database: http://ift.tt/2knsB3D
X-Force Database: http://ift.tt/2kDymIW
X-Force Database: http://ift.tt/2hjUUfe

The post IBM Security Bulletin: IBM InfoSphere Master Data Management is vulnerable to multiple OpenSSL vulnerabilities (CVE-2016-7055, CVE-2017-3730, CVE-2017-3731, CVE-2017-3732) appeared first on IBM PSIRT Blog.

Affected IBM Initiate Master Data ServiceAffected Versions
IBM Initiate Master Data Service10.1
IBM InfoSphere Master Data Management11.0
IBM InfoSphere Master Data Management11.3
IBM InfoSphere Master Data Management11.4
IBM InfoSphere Master Data Management11.5
IBM InfoSphere Master Data Management11.6


from IBM Product Security Incident Response Team http://ift.tt/2hnR5dO