Vulnerability Bulletins

Security Bulletin: Vulnerability in SSLv3 affects Integrated Management Module 2 (IMM2) (CVE-2014-3566)

   
Affected software IBM
 
SSLv3 contains a vulnerability that has been referred to as the Padding Oracle On Downgraded Legacy Encryption (POODLE) attack. SSLv3 is enabled in Integrated Management Module 2 (IMM2). CVE(s): CVE-2014-3566 Affected product(s) and affected version(s): All IMM2 firmware releases prior to v4.90 for these systems: System x3100 M4, type 2582 System x3100 M5, type 5457 System x3250 M4, type 2583 System x3250 M5, type 5458 System x3300 M4, type 7382 System x3500 M4, type 7383 System

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/security_bulletin_vulnerability_in_sslv3_affects_integrated_management_module_2_imm2_cve_2014_35661?lang=en_us