Security Bulletin: OpenSSL for IBM i is affected by CVE-2021-3711 and CVE-2021-3712

OpenSSL is provided as an API available to application developers on IBM i. The OpenSSL APIs on IBM i are vulnerable to the issues described in the vulnerability details section. The applicability of each vulnerability is determined by an application’s specific use of OpenSSL. IBM i has addressed the vulnerability for applications by addressing the CVEs in the OpenSSL API implementation.

Verified by MonsterInsights