Thursday, February 23, 2017

IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM WebSphere MQ (CVE-2016-2106, CVE-2016-2109)

OpenSSL vulnerabilities were disclosed on May 3, 2016 by the OpenSSL Project. OpenSSL is used by IBM WebSphere MQ. IBM WebSphere MQ has addressed the applicable CVEs.

CVE(s): CVE-2016-2106, CVE-2016-2109

Affected product(s) and affected version(s):

IBM WebSphere MQ V8.0 – Advanced Message Security on IBM i only

IBM WebSphere MQ 8.0.0.5 and previous levels of maintenance

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2mgoR2U
X-Force Database: http://ift.tt/25myFMu
X-Force Database: http://ift.tt/1Z0wO8Z

The post IBM Security Bulletin: Vulnerabilities in OpenSSL affect IBM WebSphere MQ (CVE-2016-2106, CVE-2016-2109) appeared first on IBM PSIRT Blog.



from IBM Product Security Incident Response Team http://ift.tt/2kQpIKN

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.