IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM InfoSphere Information Server (CVE-2017-3735, CVE-2017-3736, CVE-2017-3738)

Share this post:

OpenSSL vulnerabilities were disclosed on November 02, 2017 by the OpenSSL Project. OpenSSL is used by IBM InfoSphere Information Server. IBM InfoSphere Information Server has addressed the applicable CVEs.

CVE(s): CVE-2017-3735, CVE-2017-3736, CVE-2017-3738

Affected product(s) and affected version(s):

The following products, running on all supported platforms, are affected:
IBM InfoSphere Information Server: versions 9.1, 11.3, 11.5 and 11.7
IBM InfoSphere Information Server on Cloud: version 11.5

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22015215
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/131047
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134397
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/136078



from IBM Product Security Incident Response Team https://ift.tt/2vzosRN