IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Netezza Firmware Diagnostics.
Open Source OpenSSL and GNU glibc are used by IBM Netezza Firmware Diagnostics. IBM Netezza Firmware Diagnostics Support Tools has addressed the applicable CVEs.
CVE(s): CVE-2017-3735, CVE-2017-3736, CVE-2017-15671, CVE-2017-15670
Affected product(s) and affected version(s):
IBM Netezza Firmware Diagnostics 4.1.0.0 – 4.3.1.5
Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=swg22012498
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/131047
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134397
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133909
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/133915
The post IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM Netezza Firmware Diagnostics. appeared first on IBM PSIRT Blog.
from IBM Product Security Incident Response Team https://ift.tt/2IFjp8I