Vulnerability Bulletins

IBM Security Bulletin: Multiple vulnerabilities in OpenSSL affect IBM i

   
Affected software IBM
 
OpenSSL vulnerabilities were disclosed on March 1, 2016 by the OpenSSL Project. OpenSSL is used by IBM i. IBM i has addressed the applicable CVEs including the “DROWN: Decrypting RSA with Obsolete and Weakened eNcryption" vulnerability. CVE(s): CVE-2016-0800, CVE-2016-0705, CVE-2016-0798, CVE-2016-0797, CVE-2016-0799, CVE-2016-0704, CVE-2016-0702 and CVE-2016-0703Affected product(s) and affected version(s):Releases 7.1 and 7.2 of IBM i are affected. Refer to the following reference

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_multiple_vulnerabilities_in_openssl_affect_ibm_i?lang=en_us