Information
Security vulnerabilities and functional improvements are regularly addressed through firmware updates to the system and adapter firmware.
Unpatched system or adapter firmware can expose systems to known vulnerabilities that may be exploited by attackers. It is recommended that system and adadpter firmware updates be performed on enterprise assets on a regular basis.
NOTE: Nessus has provided the target output to assist in reviewing the benchmark to ensure target compliance.
Solution
Download the latest available from IBM FixCentral https://www.ibm.com/support/fixcentral/ for the identified hardware model and follow the provided instructions to apply to the system/adapter
Impact:
Flexible Service Processor (FSP) firmware should only be updated from the Hardware Management Console (HMC) which is responsible for the hardware.
I/O Adapter firmware should be updated from the LPAR to which the adapter is assigned.