This fix addresses a security vulnerability for in SSLv3 which affects IBM Tivoli Monitoring Situation Update Forwarder (CVE-2014-3566).
The following patches are provided to address the security vulnerability listed in the IBM Tivoli Monitoring Security Bulletin: http://www.ibm.com/support/docview.wss?uid=swg21691775.
Note: This patch is required if IV66217 has been applied to your IBM Tivoli Monitoring management server (TEMS).
If utilizing the Situation Update Forwarder (SUF) to pass updated events from OMNIbus to an ITM management server, and the management server has been updated with IV66217, then the Situation Update Forwarder, prior to 630 Fix Pack 4, will need to install the patch for IV66139 for the Situation Update Forwarder to be able to continue sending events to the management server.
The following patches are provided to remediate the vulnerability across the releases below.
VRMF | Fix |
6.30 | 6.3.0-TIV-ITM-FP0003-IV66139 |
6.23 | 6.2.3-TIV-ITM-FP0005-IV66139 |
6.22 | 6.2.2-TIV-ITM-FP0009-IV66139 |
The prerequisite level for this fix is as follows:
IBM Tivoli Monitoring, Situation Update Forwarder version 6.3.0 Fix Pack 3 (6.3.0-TIV-ITM-FP0003)
- OR -
IBM Tivoli Monitoring,Situation Update Forwarder version 6.2.3 Fix Pack 5 (6.2.3-TIV-ITM-FP0005)
- OR -
IBM Tivoli Monitoring,Situation Update Forwarder version 6.2.2 Fix Pack 9 (6.2.2-TIV-ITM-FP0009)
[{"PRLabel":"6.3.0-TIV-ITM-FP0003","PRLang":"English","PRSize":"1","PRPlat":{"label":"AIX","code":"PF002"},"PRURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.3.0&function=fixId&fixids=6.3.0-TIV-ITM-FP0003"},{"PRLabel":"6.2.3-TIV-ITM-FP0005","PRLang":"English","PRSize":"1","PRPlat":{"label":"AIX","code":"PF002"},"PRURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.2.3&function=fixId&fixids=6.2.3-TIV-ITM-FP0005"},{"PRLabel":"6.2.2-TIV-ITM-FP0009","PRLang":"English","PRSize":"1","PRPlat":{"label":"AIX","code":"PF002"},"PRURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.2.2&function=fixId&fixids=6.2.2-TIV-ITM-FP0009"}]
Refer to the README file located in Fix Central for additional information.
On
[{"DNLabel":"6.3.0-TIV-ITM-FP0003-IV66139","DNDate":"19 Dec 2014","DNLang":"English","DNSize":"122882","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.3.0.3&function=fixId&fixids=6.3.0-TIV-ITM-FP0003-IV66139","DNURL_FTP":" ","DDURL":null},{"DNLabel":"6.2.3-TIV-ITM-FP0005-IV66139","DNDate":"19 Dec 2014","DNLang":"English","DNSize":"122875","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.2.3.5&function=fixId&fixids=6.2.3-TIV-ITM-FP0005-IV66139","DNURL_FTP":" ","DDURL":null},{"DNLabel":"6.2.2.-TIV-ITM-FP0009-IV66139","DNDate":"19 Dec 2014","DNLang":"English","DNSize":"122812","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=ibm~Tivoli&product=ibm/Tivoli/IBM+Tivoli+Monitoring&platform=All&release=6.2.2.9&function=fixId&fixids=6.2.2-TIV-ITM-FP0009-IV66139","DNURL_FTP":" ","DDURL":null}]
[{"Product":{"code":"SSTFXA","label":"Tivoli Monitoring"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"Not Applicable","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF010","label":"HP-UX"},{"code":"PF016","label":"Linux"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"}],"Version":"6.3;6.2.3;6.2.2","Edition":"","Line of Business":{"code":"LOB45","label":"Automation"}}]