IBM Support

MA48442 - OSP-OTHER-UNPRED SYSTEM TLS FAILS TLSV1.2 SERVER HELLO WITHOUT
EXTENSION DATA LENGTH

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 APAR (Authorized Program Analysis Report)

Abstract

OSP-OTHER-UNPRED SYSTEM TLS FAILS TLSV1.2 SERVER HELLO WITHOUT
EXTENSION DATA LENGTH

Error Description

System TLS expects the two bytes that are required in TLSv1.3  
server hello records in the TLSv1.2 server hello too - however  
they are not required if the server has no extensions.          

Problem Summary

In response to a TLSv1.3 client hello, a TLSv1.2 server hello  
that does not include the 2 bytes for the extension data length
fails with an Illegal Parameter alert for System TLS.          

Problem Conclusion

A TLSv1.2 server hello is not required to include the 2 byte    
extension data length when the server has no extensions.  System
TLS was updated to allow a TLSv1.2 server hello that does not  
include the 2 byte extension data length.                      

Temporary Fix

Comments

Circumvention


PTFs Available

R730 MF67524  0310

R740 MF67525  0303

Affected Modules


         
         

Affected Publications

Summary Information

Status............................................CLOSED PER
HIPER...........................................No
Component..................................9400DG300
Failing Module..........................RCHMGR
Reported Release...................R730
Duplicate Of..............................




IBM i Support

IBM disclaims all warranties, whether express or implied, including, but not limited to, the implied warranties of merchantability and fitness for a particular purpose. By furnishing this document, IBM grants no licenses to any related patents or copyrights. Copyright © 1996,1997,1998, 1999, 2000, 2001, 2002, 2003, 2004, 2005, 2006, 2007, 2008, 2009, 2010, 2011, 2012, 2013, 2014, 2015, 2016, 2017, 2018, 2019, 2020 IBM Corporation. Any trademarks and product or brand names referenced in this document are the property of their respective owners. Consult the Terms of use link for trademark information

[{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Platform":[{"code":"PF012","label":"IBM i"}],"Version":"7.3; 7.4","Product":{"code":"SG15Q","label":"APARs - IBM i General"},"Component":"9400DG3","Edition":""},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Platform":[{"code":"PF012","label":"IBM i"}],"Version":"7.3; 7.4","Product":{"code":"SG16G","label":"APARs - IBM i 7.3"},"Component":"9400DG3","Edition":""},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Platform":[{"code":"PF012","label":"IBM i"}],"Version":"7.3; 7.4","Product":{"code":"SS9QQS","label":"IBM i 7.4"},"Component":"9400DG3","Edition":""}]

Document Information

Modified date:
13 November 2020