APAR status
Closed as program error.
Error description
Error Message, as reported by customer: If a Cipher instance is created with algorithm OID(e.g "1.2.840.113549.1.12.1.3") and if unrestricted jurisdiction policy file is not installed, an InvalidKeyException is thrown. Stack Trace, if applicable: java.security.InvalidKeyException: Illegal key size at javax.crypto.Cipher.a(Unknown Source) at javax.crypto.Cipher.a(Unknown Source) at javax.crypto.Cipher.a(Unknown Source) at javax.crypto.Cipher.a(Unknown Source) at javax.crypto.Cipher.init(Unknown Source) at javax.crypto.Cipher.init(Unknown Source) Other Error Information, as reported by customer: N/A
Local fix
Install unrestricted jurisdiction policy file
Problem summary
Cannot initialize Cipher created with algorithm OID ERROR DESCRIPTION: If a Cipher instance is created with algorithm OID(e.g "1.2.840.113549.1.12.1.3") and if unrestricted jurisdiction policy file is not installed, an InvalidKeyException is thrown.
Problem conclusion
Algorithm OID is not converted to algorithm name when doing permission check. The fix is to convert the algorithm OID to the algorithm name before doing the permission check. The associated RTC PR is 108946 The associated Austin CMVC defect is 117195 The associated Austin APAR is IV82024 JVMs affected : Java 6.0, Java 6.1, Java 7.0, Java 7.1 and Java 8.0 The fix was delivered for Java 6.0 SR16 FP25, Java 6.1 SR8 FP25, Java 7.0 SR9 FP40, Java 7.1 SR3 FP 40 and Java 8.0 SR3 The affected jar is "ibmjcefw.jar". The build level of this jar for the affected releases is "20160307"
Temporary fix
Comments
APAR Information
APAR number
IV82024
Reported component name
TIV JAVA CRYPTO
Reported component ID
TIVSECJCE
Reported release
100
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2016-03-01
Closed date
2016-03-18
Last modified date
2016-03-18
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
TIV JAVA CRYPTO
Fixed component ID
TIVSECJCE
Applicable component levels
R100 PSY
UP
[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"SSCZL42","label":"JCE"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"100","Edition":"","Line of Business":{"code":"","label":""}}]
Document Information
Modified date:
18 March 2016