Fixes are available
Download ISF roll-up 11 for InfoSphere Information Server Version 9.1.2
Download ISF roll-up 4 for InfoSphere Information Server Version 8.7.0.2
Download ISF roll-up 5 for InfoSphere Information Server Version 11.3.1.2
Download ISF roll-up 3 for InfoSphere Information Server Version 11.5.0.1
Download ISF roll-up 6 for InfoSphere Information Server Version 11.3.1.2
Download ISF roll-up 5 for InfoSphere Information Server Version 11.5.0.1
Download ISF roll-up 7 for InfoSphere Information Server Version 11.3.1.2
Download ISF roll-up 6 for InfoSphere Information Server Version 11.5.0.1
Download ISF roll-up 12 for InfoSphere Information Server Version 9.1.2
Download ISF roll-up 8 for InfoSphere Information Server Version 11.3.1.2
Download ISF roll-up 4 for InfoSphere Information Server Version 11.5.0.1
APAR status
Closed as program error.
Error description
Security vulnerability in Apache Commons FileUpload affects InfoSphere Information Server CVE-2016-3092
Local fix
Problem summary
**************************************************************** USERS AFFECTED: Users of Information Server, Information Governance Catalog, Business Glossary and Metadata Workbench **************************************************************** PROBLEM DESCRIPTION: Security vulnerability in Apache Commons FileUpload affects Information Server **************************************************************** RECOMMENDATION: Refer to Security bulletin http://www-01.ibm.com/support/docview.wss?uid=swg21988564 for actions to perform. ****************************************************************
Problem conclusion
update version of Apache Commons FileUpload
Temporary fix
Comments
APAR Information
APAR number
JR56302
Reported component name
INFO SRVR PLATF
Reported component ID
5724Q3612
Reported release
B50
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2016-07-18
Closed date
2016-10-14
Last modified date
2016-10-14
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
INFO SRVR PLATF
Fixed component ID
5724Q3612
Applicable component levels
R870 PSY
UP
R912 PSY
UP
RB31 PSY
UP
RB50 PSY
UP
Document Information
Modified date:
15 October 2021