IBM Support

PI80889:Web Services Potential for weak Client security bindings (CVE-2017-1501)

Download


Abstract

Web Services Potential for weak Client security bindings (CVE-2017-1501)

Download Description

PI80889 resolves the following problem:

ERROR DESCRIPTION:
Web Services Potential for weak Client security bindings (CVE-2017-1501)

PROBLEM SUMMARY:
Web Services Potential for weak Client security bindings (CVE-2017-1501)

PROBLEM CONCLUSION:
Confidential for Security Integrity ifix.

THE FOLLOWING FIXES ARE PROVIDED:
8.0.0.12-WS-WASProd-IFPI80889.zip installs on 8.0.0.12 through 8.0.0.13.
8.5.5.9-WS-WASProd-IFPI80889.zip installs on 8.5.5.9 through 8.5.5.11.
9.0.0.0-WS-WASProd-IFPI80889.zip installs on 9.0.0.0 through 9.0.0.4.

The fix for this APAR is currently targeted for inclusion in fix pack 8.0.0.14, 8.5.5.12, 9.0.0.5. Please refer to the Recommended Updates page for delivery information:
http://www.ibm.com/support/docview.wss?rs=180&uid=swg27004980

Prerequisites

None

Installation Instructions

Please review the readme.txt for detailed installation instructions.

[{"INLabel":"V80 Readme","INLang":"US English","INSize":"2255","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI80889/8.0.0.13/readme.txt"},{"INLabel":"V85 Readme","INLang":"US English","INSize":"2301","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI80889/8.5.5.11/readme.txt"},{"INLabel":"V90 Readme","INLang":"US English","INSize":"2222","INURL":"ftp://public.dhe.ibm.com/software/websphere/appserv/support/fixes/PI80889/9.0.0.4/readme.txt"}]
On
[{"DNLabel":"8.0.0.12-WS-WASProd-IFPI80889","DNDate":"08-08-2017","DNLang":"US English","DNSize":"256228","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.0.0.12-WS-WASProd-IFPI80889&includeSupersedes=0","DNURL_FTP":"","DDURL":null},{"DNLabel":"8.5.5.9-WS-WASProd-IFPI80889","DNDate":"08-08-2017","DNLang":"US English","DNSize":"259974","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=8.5.5.9-WS-WASProd-IFPI80889&includeSupersedes=0","DNURL_FTP":"","DDURL":null},{"DNLabel":"9.0.0.0-WS-WASProd-IFPI80889","DNDate":"08-08-2017","DNLang":"US English","DNSize":"260761","DNPlat":{"label":"AIX","code":"PF002"},"DNURL":"http://www.ibm.com/support/fixcentral/swg/selectFixes?parent=ibm/WebSphere&product=ibm/WebSphere/WebSphere Application Server&release=All&platform=All&function=fixId&fixids=9.0.0.0-WS-WASProd-IFPI80889&includeSupersedes=0","DNURL_FTP":"","DDURL":null}]

Technical Support

Contact IBM Support using SR (http://www.ibm.com/software/support/probsub.html), visit the WebSphere Application Server support web site (http://www.ibm.com/software/webservers/appserv/was/support/), or contact 1-800-IBM-SERV (U.S. only).

[{"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Business Unit":{"code":"BU053","label":"Cloud & Data Platform"},"Component":"General","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF010","label":"HP-UX"},{"code":"PF012","label":"IBM i"},{"code":"PF013","label":"Inspur K-UX"},{"code":"PF016","label":"Linux"},{"code":"PF022","label":"OS X"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"},{"code":"PF014","label":"iOS"},{"code":"PF035","label":"z\/OS"}],"Version":"9.0.0.3;9.0.0.2;9.0.0.1;9.0.0.0;8.5.5.9;8.5.5.11;8.5.5.10;8.0.0.13;8.0.0.12;9.0.0.4","Edition":"Advanced;Base;Developer;Enterprise;Express;Network Deployment;Single Server","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
15 June 2018

UID

swg24043956