APAR status
Closed as program error.
Error description
This APAR addresses a potential security issue. Any relevant information will be released via My Notifications. https://www.ibm.com/support/mynotifications
Local fix
Problem summary
Libxml2 is affected by three CVEs :- CVE-2022-29824, CVE-2022-40303 and CVE-2022-40304
Problem conclusion
Update libxml2 to 2.9.14 version (which fixes CVE-2022-29824) + the fixes for CVE-2022-40303 & CVE-2022-40304.
Temporary fix
Comments
APAR Information
APAR number
IJ45059
Reported component name
AIX V7.3
Reported component ID
5765CD300
Reported release
730
Status
CLOSED PER
HIPER
NoHIPER
Submitted date
2023-01-23
Closed date
2023-04-27
Last modified date
2023-04-27
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
AIX V7.3
Fixed component ID
5765CD300
Applicable component levels
[{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SG11T","label":"AIX 7.3 HIPERS- APARs and Fixes"},"Platform":[{"code":"PF053","label":"Power Systems"}],"Version":"730","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}}]
Document Information
Modified date:
27 April 2023