IBM Support

An important security issue with Identity Management found with Cloud Pak for Business Automation 23.0.1

Flashes (Alerts)


Abstract

An important security issue with Identity Management found with Cloud Pak for Business Automation 23.0.1. All customers are highly recommend to apply the fix documented in this technical notice. If you need more details on the specific of the security issue, please contact IBM support.

Content

To remediate this security issue, perform steps as follows.
Online installation:
Update opencloud-operators-v4-0 catalogsource in openshift-marketplace namespace for your Openshift cluster.
-------
# IBM Cloud Foundational Services 4.0.1
apiVersion: operators.coreos.com/v1alpha1
kind: CatalogSource
metadata:
  name: opencloud-operators-v4-0
  namespace: openshift-marketplace
  annotations:
    bedrock_catalogsource_priority: '1'
spec:
  displayName: IBMCS Operators
  publisher: IBM
  sourceType: grpc
  image: icr.io/cpopen/ibm-common-service-catalog@sha256:f8fb1181851da5f1145f07ee2fccd0b1e33d460bc016296f25168c558d89d11f
  updateStrategy:
    registryPoll:
      interval: 45m
  priority: 100 
-------
Wait for the opencloud-operators-v4-0 pod to reconcile.
Offline / Airgap installation:
Use the file cp4ba-case-to-be-mirrored-23.0.1_LA001.txt mentioned in this technote. Follow the instructions in IBM Documentation.

[{"Type":"MASTER","Line of Business":{"code":"LOB45","label":"Automation"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSBYVB","label":"IBM Cloud Pak for Business Automation"},"ARM Category":[{"code":"a8m3p000000LQWWAA4","label":"Operate"}],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"23.0.1"}]

Document Information

Modified date:
03 July 2023

UID

ibm17008631