Download
Downloadable File
| File link | File size | File description |
|---|---|---|
Abstract
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing (CVE-2022-38712 CVSS 5.9)
Download Description
PH49111 resolves the following problem:
ERROR DESCRIPTION:
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing (CVE-2022-38712 CVSS 5.9).
PROBLEM SUMMARY:
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing (CVE-2022-38712 CVSS 5.9).
PROBLEM CONCLUSION:
Confidential for CVE-2022-38712.
The fix for this APAR is currently targeted for inclusion in fix packs 8.5.5.23 and 9.0.5.14.
For more information, see 'Recommended Updates for WebSphere Application Server':
http://www.ibm.com/support/docview.wss?rs=180&uid=swg27004980
ERROR DESCRIPTION:
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing (CVE-2022-38712 CVSS 5.9).
PROBLEM SUMMARY:
IBM WebSphere Application Server is vulnerable to SOAPAction spoofing (CVE-2022-38712 CVSS 5.9).
PROBLEM CONCLUSION:
Confidential for CVE-2022-38712.
The fix for this APAR is currently targeted for inclusion in fix packs 8.5.5.23 and 9.0.5.14.
For more information, see 'Recommended Updates for WebSphere Application Server':
http://www.ibm.com/support/docview.wss?rs=180&uid=swg27004980
Prerequisites
None
Installation Instructions
Review the readme.txt for detailed installation instructions.
| URL | SIZE(Bytes) |
|---|---|
| V90 IM readme file | 2202 |
| V85 IM readme file | 2396 |
| V80 IM readme file | 2361 |
| V70 IM readme file | 5050 |
Download Package
|
IMPORTANT NOTE:
|
WebSphere Application Server and Liberty fix access requires S&S Entitlement beginning in 2021. Use properly registered IDs to download the fixes in this table.
|
| DOWNLOAD | RELEASE DATE | SIZE(Bytes) | APPLICABLE FIXPACKS |
URL |
|---|---|---|---|---|
| 9.0.5.10-WS-WASProd-IFPH49111 | 13 October 2022 | 273769 | 9.0.5.10 through 9.0.5.13 | FC |
| 8.5.5.20-WS-WASProd-IFPH49111 | 13 October 2022 | 271389 | 8.5.5.20 through 8.5.5.22 | FC |
| 8.0.0.15-WS-WASEmbeded-IFPH49111 | 13 October 2022 | 260051 | 8.0.0.15 | FC |
| 8.0.0.15-WS-WASProd-IFPH49111 | 13 October 2022 | 265017 | 8.0.0.15 | FC |
| 7.0.0.45-WS-WAS-IFPH49111 | 13 October 2022 | 14698 | 7.0.0.45 | FC |
Note: FC stands for Fix Central. Review the What is Fix Central (FC)? FAQs for more details.
Problems Solved
PH49111
On
Technical Support
Contact IBM Support at https://www.ibm.com/mysupport/ or 1-800-IBM-SERV (US only).
Document Location
Worldwide
[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSEQTP","label":"WebSphere Application Server"},"Component":"General","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF010","label":"HP-UX"},{"code":"PF012","label":"IBM i"},{"code":"PF016","label":"Linux"},{"code":"PF027","label":"Solaris"},{"code":"PF033","label":"Windows"},{"code":"PF035","label":"z\/OS"}],"Version":"7.0.0.45;8.0.0.15;8.5.5.20;8.5.5.21;8.5.5.22;9.0.5.10;9.0.5.11;9.0.5.12;9.0.5.13","Edition":"Base","Line of Business":{"code":"LOB45","label":"Automation"}}]
Problems (APARS) fixed
Was this topic helpful?
Document Information
Modified date:
05 January 2023
UID
ibm16829481