Qradar_2U_M4_MT5466_xx05_xx28_QIF_PCAP_Firmware_Update_5_0_2 Version 5.0.2 ------------------------------------------------ Problem(s) Fixed: - Missing file added. Enhancements: Limitations: Dependencies: *ibm_fw_uefi_yoe122d-2.01_anyos_32-64 uEFI Flash Update Version 2.01 (BuildID YOE122D) Change History Version 2.01 - BuildID: YOE122D ------------------------------------------------- Problem(s) Fixed: - Updated microcode to address CVE-2017-5715 Enhancements: Limitations: Dependencies: - The IMM firmware must be at BUILDID: 1AOO62W Version: 4.35 (ibm_fw_imm2_1aoo62w-4.35_anyos_noarch) or higher prior to installing UEFI version 1.10 or higher. If the IMM level is lower, the UEFI update module will be rejected as invalid because of additional security features implemented in this release. Version 2.00 - BuildID: YOE122B ------------------------------------------------- Problem(s) Fixed: - Fixed a potential issue when the password jumper enabled. Enhancements: Limitations: Dependencies: - The IMM firmware must be at BUILDID: 1AOO62W Version: 4.35 (ibm_fw_imm2_1aoo62w-4.35_anyos_noarch) or higher prior to installing UEFI version 1.10 or higher. If the IMM level is lower, the UEFI update module will be rejected as invalid because of additional security features implemented in this release. *ibm_fw_imm2_1aoo80g-6.40_anyos_noarch Integrated Management Module II (IMM2) Firmware Update Change History Version 6.40, 1AOO80G - Critical - Supports systems: HS23, HS23E, x3100 M4, x3100 M5, x3250 M4, x3250 M5, x3300 M4, x3500 M4, x3530 M4, x3550 M4, x3630 M4, x3650 M4, x3650 M4 BD, x3650 M4 HD, x3750 M4, x3850 X6, x3950 X6, dx360 M4, nx360 M4, x220, x222, x240, x440, x280, x480, x880 - Firmware changes to address security vulnerabilities: CVE-2017-11176, CVE-2013-4345, CVE-2016-6515, CVE-2017-7526, CVE-2011-2699, CVE-2015-5366, CVE-2017-14106 - Additional firmware changes to address security vulnerabilities in open source packages, but for which there is no IMM2 exposure: CVE-2016-9131, CVE-2016-9147, CVE-2016-9444, CVE-2017-0663, CVE-2017-5969, CVE-2017-7375, CVE-2017-7376, CVE-2017-7526, CVE-2017-3142, CVE-2017-3143, CVE-2017-1000366, CVE-2016-9318, CVE-2017-9047, CVE-2017-9048, CVE-2017-9049, CVE-2017-9050, CVE-2017-9022, CVE-2017-9023, CVE-2013-4520, CVE-2015-7995, CVE-2015-9019, CVE-2016-4738, CVE-2017-5029, CVE-2016-2775, CVE-2016-6170, CVE-2017-3136, CVE-2017-3137, CVE-2017-3138, CVE-2016-9586, CVE-2017-7407, CVE-2016-9042, CVE-2017-6451, CVE-2017-6458, CVE-2017-6460, CVE-2017-6462, CVE-2017-6463, CVE-2017-6464, CVE-2015-8540, CVE-2016-10087 - Added support to send SysRq via SSH CLI. - Added a parameter to the clearlog CLI command to specify which log to clear (event log or audit log). - Changed the default minimum TLS version to TLS 1.2. Note: The firmware will continue to use the current minimum TLS version setting until the IMM2 is reset to factory defaults. Users can configure the IMM2 to use other TLS versions if needed by their browser or management application, but the default minimum is version 1.2. - Fixed a problem where SOL connection hangs randomly. - Fixed a problem where IMM web UI displays abnormal icon (x) Led status. - Fixed a problem where after updating UEFI firmware IMM shows the pending version in table instead of the previous version. - Fixed a problem where IMM auto promotion may not work. - Fixed a problem where IMM reports false PSU fan and thermal fault error message - Updated manifest to enable SKLM/TKLM on x440 M4, x240 M4, x220 M4. - Handled the false PDB (Power Distribution Board) alerts on x3500 M4. *ibm_fw_dsa_dsyte2w-9.65_anyos_32-64: Dynamic System Analysis (DSA) Preboot Change History Version 9.65, Build ID DSYTE2W o Problem(s) Fixed: SECURITY: Disabled SSLv2, 3DES, RC4, and Blowfish SECURITY: Fixed security vulnerability CVE-2016-2183 Version 9.65, Build ID DSYTE2V o Problem(s) Fixed: PDSA can't read the FRU info of lenovo and lenovo-x hard disk Version 9.65, Build ID DSYTE2T o Problem(s) Fixed: Takes too long to boot up when system is attached to lots of LUNs Version 9.65, Build ID DSYTE2R o Problem(s) Fixed: SECURITY FIXES: CVE-2014-9761 CVE-2015-1819 CVE-2015-3197 CVE-2015-5312 CVE-2015-7497 CVE-2015-7498 CVE-2015-7499 CVE-2015-7500 CVE-2015-7547 CVE-2015-7941 CVE-2015-7942 CVE-2015-7981 CVE-2015-8126 CVE-2015-8241 CVE-2015-8242 CVE-2015-8317 CVE-2015-8704 CVE-2015-8710 CVE-2015-8776 CVE-2015-8777 CVE-2015-8778 CVE-2015-8779 CVE-2016-0702 CVE-2016-0705 CVE-2016-0755 CVE-2016-0797 CVE-2016-0800 *elx_fw_fc_15b-2.02x11-40_linux_32-64 (Emulex 8Gb HBA: xx28 Appliances Only) =============================================================================== Emulex 8Gb Fibre Channel Firmware Package =============================================================================== Firmware Version: 2.02x11 Boot Code Version: 5.30a6 Supported On: System x, BladeCenter and Flex Problems Fixed: - SAN boot stopped working after firmware/boot BIOS upgrade - Resolves issue with supported adapters not being detected when using package with Bootable Media Creator.(BoMC) Incremental Interoperability: - Company branded versions of formerly IBM branded products Known Issues: - To disable BFS after BOFM or IFM have been enabled, it must be done by setting BFS manually in the EFIBoot config utility or sending a BOFM default command to the port. This is working as expected and we are documenting it here.(159225) =============================================================================== *ibm_fw_sraidmr_5200-24.16.0-0108_linux_32-64 (serveRAID M5110: xx05, QIF M4 Appliances Only) BIOS and Firmware Update for ServeRAID M5200 Series SAS/SATA Controllers Adapters Supported: ServeRAID M5225-2GB SAS/SATA Controller ServeRAID M5210e SAS/SATA Controller for IBM System x ServeRAID M5210 SAS/SATA Controller NOTE TO SERVICE - Reference RETAIN #N/A Version 24.16.0-0108 -------------------- BIOS_6.32.02.1_4.17.08.00_0x06150501 HII: E3.21.14.03 UEFI Driver: 0x06150501 BIOS: 6.32.02.1_4.17.08.00 MR FW: 4.660.00-8268 iMR FW: 4.660.01-8269 Fixes: - Revert the DDR tuning values back to default value. (SCGCQ01445618 Port of - SCGCQ01444640, SCGCQ01447915) ------------------------------------------------------------------------------------------------------------------------- *ibm_fw_hddlenovo_sas-1.23.02_linux_32-64.chg: IBM Online SAS/SATA HDD/SSD Update Program. Version 1.23.02 Build ID: IBM12302 ************************************************************************** IBM SAS/SATA HDD/SSD Update Program Version 1.23.02 - Update Utility release for IBM x86 servers. SAS 3.5" - ST1000NM0045, ST2000NM0045, ST4000NM0025 to LK85 - ST6000NM0095 to LC85 SAS 2.5" -HUC101860CSS20E, HUC101890CSS20E, HUC101812CSS20E, HUC101830CSS20E to P2H6