IBM Support

PI82481: Multiple vulnerabilities in IBM HTTP Server

Download


Abstract

Multiple vulnerabilities in IBM HTTP Server

Download Description

Note: Where applicable, this interim fix supercedes ifixes for PI73984, PI68803, and PI66849.

PI82481 resolves the following problem:

ERROR DESCRIPTION:
Multiple vulnerabilities in IBM HTTP Server.

LOCAL FIX:

PROBLEM SUMMARY:
PI82260 - CVE-2017-3167 for IBM HTTP Server
PI82263 - CVE-2017-7668 for IBM HTTP Server
PI82481 - CVE-2017-7679 for IBM HTTP Server

PROBLEM CONCLUSION:
IBM HTTP Server was updated to remove the potential vulnerabilities.
This fix is targeted for IBM HTTP Server fix packs:
- 7.0.0.45
- 8.0.0.14
- 8.5.5.12 (The CVE-2017-7679 fix is not until 8.5.5.13)
- 9.0.0.5

Prerequisites

None

Installation Instructions

Please review the readme.txt for detailed installation instructions.

[{"INLabel":"V85 Readme","INLang":"US English","INSize":"2119","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI82481/8.5.5.11/readme.txt"},{"INLabel":"V80 Readme","INLang":"US English","INSize":"2120","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI82481/8.0.0.13/readme.txt"},{"INLabel":"V70 Readme","INLang":"US English","INSize":"5115","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI82481/7.0.0.43/readme.txt"},{"INLabel":"V90 Readme","INLang":"US English","INSize":"2198","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI82481/9.0.0.4/readme.txt"},{"INLabel":"8.5.5.12 Readme","INLang":"US English","INSize":"2109","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI82481/8.5.5.12/readme.txt"}]
On
[{"DNLabel":"9.0.0.3-WS-WASIHS-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"7761784","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=9.0.0.3-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"9.0.0.4-WS-WASIHS-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"6603320","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=9.0.0.4-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"8.5.5.12-WS-WASIHS-IFPI82481","DNDate":"21 Jul 2017","DNLang":"US English","DNSize":"503555","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.5.5.12-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"8.5.5.11-WS-WASIHS-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"9043768","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.5.5.11-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"8.5.5.10-WS-WASIHS-IFPI82481","DNDate":"17 Jul 2017","DNLang":"US English","DNSize":"16477568","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.5.5.10-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"8.0.0.12-WS-WASIHS-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"21968698","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.0.0.12-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"8.0.0.13-WS-WASIHS-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"7492650","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.0.0.13-WS-WASIHS-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-AixPPC32-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"250952","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-AixPPC32-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-LinuxPPC32-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"239990","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-LinuxPPC32-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-LinuxS390-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"245736","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-LinuxS390-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-LinuxX32-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"222259","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-LinuxX32-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-SolarisSparc-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"513851","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-SolarisSparc-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-SolarisX64-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"237437","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-SolarisX64-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-WinX32-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"534144","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-WinX32-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-HpuxIA64-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"744630","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-HpuxIA64-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null},{"DNLabel":"7.0.0.43-WS-WASIHS-HpuxPaRISC-IFPI82481","DNDate":"07-17-2017","DNLang":"US English","DNSize":"327164","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=7.0.0.43-WS-WASIHS-HpuxPaRISC-IFPI82481&includeSupersedes=0","DNURL_FTP":" ","DDURL":null}]

Technical Support

Contact IBM Support using SR (http://www.ibm.com/software/support/probsub.html), visit the WebSphere Application Server support web site (http://www.ibm.com/software/webservers/appserv/was/support/), or contact 1-800-IBM-SERV (U.S. only).

[{"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"IBM HTTP Server","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF010","label":"HP-UX"},{"code":"PF016","label":"Linux"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"},{"code":"PF035","label":"z\/OS"}],"Version":"9.0.0.3;8.5.5.11;8.5.5.10;8.0.0.13;8.0.0.12;7.0.0.43;9.0.0.4;8.5.5.12","Edition":"Advanced;Base;Enterprise;Network Deployment;Single Server","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
15 June 2018

UID

swg24043880