IBM Support

IJ53828: THE MMREMOTE SYSTEM OPERATIONS COMMAND WAS VULNERABLE DUE TO AN UNRESTRICTED CHECK OF THE PARAMETERS.

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 

APAR status

  • Closed as program error.

Error description

  • If the customer executes the systemops command, it will allow
    any command to be executed, as there is no specific command
    validation in place.
    

Local fix

Problem summary

  • If the customer executes the systemops command, it will allow
    any command to be executed, as there is no specific command
    validation in place.
    

Problem conclusion

  • Benefits of the solution:
    Updated the code to ensure that only specific commands can be
    executed. This change adds a layer of security by restricting
    unauthorized or potentially harmful commands. The validation
    process now checks for allowed commands before execution,
    preventing any unintended operations.performed.
    
    Work Around:
    None
    
    Problem trigger:
    No such conditions
    
    Symptom:
    None
    
    Platforms affected:
    Linux Only
    
    Functional Area affected:
    No Such restriction
    
    Customer Impact:
    High Importance
    

Temporary fix

Comments

APAR Information

  • APAR number

    IJ53828

  • Reported component name

    SPEC SCALE STD

  • Reported component ID

    5737F33AP

  • Reported release

    523

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2025-03-06

  • Closed date

    2025-03-06

  • Last modified date

    2025-03-06

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    SPEC SCALE STD

  • Fixed component ID

    5737F33AP

Applicable component levels

[{"Business Unit":{"code":"BU048","label":"IBM Software"},"Product":{"code":"STXKQY"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"523","Line of Business":{"code":"LOB69","label":"Storage TPS"}}]

Document Information

Modified date:
06 March 2025