IBM Support

Cognos Business Intelligence 10.2.x interim fixes address a security vulnerability

Download


Abstract

Cognos Business Intelligence interim fixes address a security vulnerability affecting IBM Cognos Business Intelligence 10.2, 10.2.1, 10.2.1.1 and 10.2.2.

Download Description

The following interim fixes provide important product corrections related to a security vulnerability affecting IBM Cognos Business Intelligence 10.2, 10.2.1, 10.2.1.1 and 10.2.2:

  • IBM Cognos Business Intelligence 10.2 Interim Fix 20 (Implemented by file 10.2.1105.504)
  • IBM Cognos Business Intelligence 10.2.1 Interim Fix 17 (Implemented by file 10.2.5000.528)
  • IBM Cognos Business Intelligence 10.2.1.1 Interim Fix 16 (Implemented by file 10.2.5010.512)

  • 10.2.1.1 Fix 16 is also included in 10.2.1.1 FP11
  • IBM Cognos Business Intelligence 10.2.2 Interim Fix 12 (Implemented by file 10.2.6105.506)

  • 10.2.2 Fix 12 is also included in 10.2.2 FP6


It is recommended that the appropriate fix is applied to all affected environments. In each environment, after the appropriate fix is applied, please follow the instructions in the document Updating the IBM Cognos gateway after security kit installation. It is important to update the IBM Cognos BI gateway as there could be a potential mix of 32 bit and 64 bit libraries resulting in errors when accessing the gateway.
IBM Cognos Business Intelligence 10.2.x Security Interim Fixes are now cumulative. The updater files provided contain all the security fixes applicable to 10.2.x releases made available since January 2015. The updater files identified in the Download section can be applied if security fixes made available previously (including those available since January 2015) have already been installed.

If you are using IBM Cognos TM1, you should also apply IBM Cognos TM1 Security fixes. This will ensure TM1 and Business Intelligence continue to operate as expected.

Please refer to the Security Bulletin for more details..

Prerequisites

These interim fixes require the following releases are installed as prerequisites:

  • Cognos BI 10.2 Interim Fix 20 (10.2.0 IF20) requires that Cognos Business Intelligence 10.2 is already installed
  • Cognos BI 10.2.1 Interim Fix 17 (10.2.1 IF17) requires that Cognos Business Intelligence 10.2.1 is already installed
  • Cognos BI 10.2.1.1 Interim Fix 16 (10.2.1.1 IF16) requires that Cognos Business Intelligence 10.2.1.1 is already installed
  • Cognos BI 10.2.2 Interim Fix 12 (10.2.2 IF12) requires that Cognos Business Intelligence 10.2.2 is already installed

These Interim Fixes are compatible with all Fix Packs and Interim Fixes that have previously been made available for these releases.

Installation Instructions

To download an interim fix

  1. Review the prerequisites.
  2. Download the appropriate compressed tar file using the links in the Download package section.

Some browsers might change the downloaded file type from .tar.gz to a file type not recognized by the operating system. To correct this, change the file type back to tar.gz. Use of Download Director will prevent inadvertent renaming of files at download

To install an interim fix on Linux or UNIX
  1. Copy the downloaded interim fix to the appropriate operating system.
  2. Change to the directory where you have copied the downloaded interim fix image.
  3. Enter the following command: gunzip <filename> .tar.gz | tar xvf –
  4. If you want to see the version of a component before you install it, unpack the tar file to disk, or read the table of contents of the tar file.
  5. Follow the installation instructions in the IBM Cognos Business Intelligence Installation and Configuration Guide.
  6. Apply the interim fix to all installations.
Note: GNU Zip can be obtained from www.gzip.org and GNU tar can be obtained from www.gnu.org/software/tar

To install an interim fix on Windows
  1. Change to the directory where you have downloaded the interim fix.
  2. Using your file compress and decompress utility, decompress the .tar.gz file. If you are using WinZip, select the option "use folder names".
  3. If you want to see the version of a component before you install it, unpack the tar file to disk, or read the table of contents of the tar file.
  4. Follow the installation instructions in the IBM Cognos Business Intelligence Installation and Configuration Guide.
  5. Apply the interim fix to all installations.

Applicable Tech Notes
Fix Pack and Interim Fix Rollback - http://www-01.ibm.com/support/docview.wss?uid=swg21341204
Customization Considerations When Installing Interim Fixes - http://www-01.ibm.com/support/docview.wss?uid=swg21632409

[{"INLabel":"Cognos BI Installation and Configuration Guide 10.2","INLang":"Language Independent","INSize":"7000","INURL":"http://www.ibm.com/support/knowledgecenter/SSEP7J_10.2.0/com.ibm.swg.ba.cognos.cbi.doc/welcome.html"},{"INLabel":"Cognos BI Installation and Configuration Guide 10.2.1","INLang":"Language Independent","INSize":"7000","INURL":"http://www.ibm.com/support/knowledgecenter/SSEP7J_10.2.1/com.ibm.swg.ba.cognos.cbi.doc/welcome.html"},{"INLabel":"Cognos BI Installation and Configuration Guide 10.2.2","INLang":"Language Independent","INSize":"7000","INURL":"http://www-01.ibm.com/support/knowledgecenter/SSEP7J_10.2.2/com.ibm.swg.ba.cognos.cbi.doc/pathway_install.html"}]

Download Package

It is recommended that you install the latest generally available interim fix.

On
[{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 AIX","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"276685000","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-AIX64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 HP-UX Itanium","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"327821000","DNPlat":{"label":"HP-UX","code":"PF010"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-HPUXIA64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 Linux pSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"207957000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-Linuxppc64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 Linux x86","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"221050000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-Linuxi38664-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 Linux zSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"211120000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-zLinux64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 Solaris","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"234401000","DNPlat":{"label":"Solaris","code":"PF027"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-Solaris64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 32-bit 10.2 IF20 Windows ","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"277626000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-Win32-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2 IF20 Windows","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"376459000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2&platform=All&function=fixId&fixids=10.2-BA-CBI-Win64-IF0020","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 AIX","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"237801000","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-AIX64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 HP-UX Itanium","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"264302000","DNPlat":{"label":"HP-UX","code":"PF010"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-HPUXIA64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 Linux pSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"170713000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-Linuxppc64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 Linux x86","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"183462000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-Linuxi38664-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 Linux zSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"182819000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-zLinux64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 Solaris","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"197539000","DNPlat":{"label":"Solaris","code":"PF027"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-Solaris64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 32-bit 10.2.1 IF17 Windows ","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"256532000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-Win32-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1 IF17 Windows","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"374932000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1&platform=All&function=fixId&fixids=10.2.1-BA-CBI-Win64-IF0017","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 AIX","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"319066000","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-AIX64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 HP-UX Itaniu","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"389009000","DNPlat":{"label":"HP-UX","code":"PF010"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-HPUXIA64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 Linux pSerie","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"225652000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-Linuxppc64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 Linux x86","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"237810000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-Linuxi38664-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 Linux zSerie","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"234194000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-zLinux64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 Solaris","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"258148000","DNPlat":{"label":"Solaris","code":"PF027"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-Solaris64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 32-bit 10.2.1.1 IF16 Windows ","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"300647000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-Win32-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.1.1 IF16 Windows","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"431245000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.1.1&platform=All&function=fixId&fixids=10.2.1.1-BA-CBI-Win64-IF0016","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 AIX ","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"485877000","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-AIX64-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Linux pSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"395348000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Linuxppc64-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Linux Sys p LE","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"322607000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Linuxple64-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Linux x86","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"405650000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Linuxi38664-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Linux zSeries","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"403670000","DNPlat":{"label":"Linux","code":"PF016"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-zLinux64-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Solaris","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"432037000","DNPlat":{"label":"Solaris","code":"PF027"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Solaris64-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 32-bit 10.2.2 IF12 Windows ","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"468633000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Win32-IF0012","DNURL_FTP":" ","DDURL":null},{"DNLabel":"Cognos BI Server 64-bit 10.2.2 IF12 Windows","DNDate":"30 Jun 2016","DNLang":"Language Independent","DNSize":"613815000","DNPlat":{"label":"Windows","code":"PF033"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/quickorder?parent=Cognos&product=ibm/Information+Management/Cognos+8+Business+Intelligence&release=10.2.2&platform=All&function=fixId&fixids=10.2.2-BA-CBI-Win64-IF0012","DNURL_FTP":" ","DDURL":null}]
[{"Product":{"code":"SSEP7J","label":"Cognos Business Intelligence"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"--","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF010","label":"HP-UX"},{"code":"PF016","label":"Linux"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"}],"Version":"10.2.2;10.2.1;10.2","Edition":"","Line of Business":{"code":"LOB10","label":"Data and AI"}}]

Document Information

Modified date:
15 June 2018

UID

swg24042360