Vulnerability Bulletins

IBM Security Bulletin: Vulnerabilties in OpenSSL affect IBM Storwize V7000 Unified (CVE-2014-3513, CVE-2014-3567, CVE-2014-3568)

   
Affected software IBM
 
OpenSSL vulnerabilities along with SSL 3 Fallback protection (TLS_FALLBACK_SCSV) were disclosed on October 15, 2014 by the OpenSSL Project. OpenSSL is used by Storwize V7000 Unified. Storwize V7000 Unified has addressed the applicable CVEs and included the SSL 3.0 Fallback protection (TLS_FALLBACK_SCSV) provided by OpenSSL CVE(s): CVE-2014-3513, CVE-2014-3567 and CVE-2014-3568 Affected product(s) and affected version(s): IBM Storwize V7000 Unified, versions 1.3.0.0 to 1.4.3.6 and

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_vulnerabilties_in_openssl_affect_ibm_storwize_v7000_unified_cve_2014_3513_cve_2014_3567_cve_2014_3568?lang=en_us