IBM Security Bulletin: Vulnerabilities in libxml2 affect Intel® Manycore Platform Software Stack (Intel® MPSS) for Linux and Windows

Intel® Manycore Platform Software Stack (Intel® MPSS) for Linux and Windows have addressed the following vulnerabilities in libxml2.

CVE(s): CVE-2017-9050, CVE-2017-9049, CVE-2017-9048, CVE-2017-9047, CVE-2017-8872

Affected product(s) and affected version(s):

The following products used with Intel Xeon Phi PCI-Express cards (Intel Xeon Phi 3120A, Intel Xeon Phi 5110P, Intel Xeon Phi 7120A, and Intel Xeon Phi 7210P) on the System x systems:

  • iDataPlex dx360 M4
  • NeXtScale nx360 M4
  • PureFlex x220 M4 / x240 M4 / x240 M5
  • x3850 X6 / x3950 X6
ProductAffected Version
Intel® Manycore Platform Software Stack (MPSS) for Linux & Windows3.8

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2rfSVSM
X-Force Database: http://ift.tt/2zTbKLZ
X-Force Database: http://ift.tt/2xss7xw for the current score
X-Force Database: http://ift.tt/2zTW76Y
X-Force Database: http://ift.tt/2xsm3Vr
X-Force Database: http://ift.tt/2zTADHi

The post IBM Security Bulletin: Vulnerabilities in libxml2 affect Intel® Manycore Platform Software Stack (Intel® MPSS) for Linux and Windows appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2mHXgtu