IBM Support

IV45596: SECURITY APAR,MULTIPLE OPENSSL VULNERABILITIES IN TIVOL ENDPOINT MANAGER FOR REMOTE CONTROL

Subscribe

You can track all active APARs for this component.

 

APAR status

  • Closed as program error.

Error description

  • Tivoli Endpoint Manager for Remote Control 8.2.1 affected by
    security vulnerabilities in the OpenSSL libraries that are
    included with Tivoli Endpoint Manager for Remote Control.
    
    CVE ids:
    CVE-2012-2131 CVE-2012-2110 CVE-2012-0884 CVE-2012-0050
    CVE-2011-4108 CVE-2011-4576 CVE-2011-4577 CVE-2011-4619
    CVE-2012-0027 CVE-2011-3207 CVE-2011-3210 CVE-2011-0014
    CVE-2010-4252 CVE-2010-3864 CVE-2010-0742 CVE-2010-1633
    CVE-2013-0169 CVE-2013-0166 CVE-2012-2686
    

Local fix

  • n/a
    

Problem summary

  • Users affected
    Target
    Gateway
    Broker
    CLI
    

Problem conclusion

  • This fix is included in interim
    fixpacks 8.2.1-TIV-TEMRC821-IF0005 and
    8.2.0-TIV-TEMRC820-IF0001
    

Temporary fix

Comments

APAR Information

  • APAR number

    IV45596

  • Reported component name

    TIV EP MGR REM

  • Reported component ID

    5725C43RC

  • Reported release

    820

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt

  • Submitted date

    2013-07-15

  • Closed date

    2013-07-26

  • Last modified date

    2014-04-30

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    TIV EP MGR REM

  • Fixed component ID

    5725C43RC

Applicable component levels

  • R820 PSN

       UP

[{"Business Unit":{"code":"BU029","label":"Software"},"Product":{"code":"SSBQVS","label":"IBM BigFix family"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"820"}]

Document Information

Modified date:
07 December 2021