IBM Security Bulletin: Multiple Vulnerabilities in OpenSSL affects IBM Tivoli Netcool System Service Monitors/Application Service Monitors (CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738)

The following security issues have been identified in OpenSSL 1.0.2, which is included as part of IBM Tivoli Netcool System Service Monitors/Application Service Monitors. Upgrading to OpenSSL 1.0.2o addresses these vulnerabilities.

CVE(s): CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738

Affected product(s) and affected version(s):

IBM Tivoli Netcool System Service Monitors/Application Service Monitors v4.0.1

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://www-01.ibm.com/support/docview.wss?uid=ibm10715747
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/131047
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/134397
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/136077
X-Force Database: https://exchange.xforce.ibmcloud.com/vulnerabilities/136078

The post IBM Security Bulletin: Multiple Vulnerabilities in OpenSSL affects IBM Tivoli Netcool System Service Monitors/Application Service Monitors (CVE-2017-3735, CVE-2017-3736, CVE-2017-3737, CVE-2017-3738) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team https://ift.tt/2N1dHMc