Data Integration

Data Integration

Connect with experts and peers to elevate technical expertise, solve problems and share insights.

 View Only

Security Bulletin: IBM InfoSphere Information Server 11.7.1.3.4

  • 1.  Security Bulletin: IBM InfoSphere Information Server 11.7.1.3.4

    Posted Fri October 07, 2022 07:51 AM

    Hello.

    Has anyone already installed the interin fix bellow and did you have any issues?

    PATCH FOR KNOWN ISSUE : DT139296
    PATCH NAME : patch_DT139296_domain_all_11713
    KNOWN ISSUE SUMMARY : Information Server is affected by an information disclosure vulnerability
    This patch modifies the following file, deployed on domain within
    Application Server:

    datastage_api_restservices.war

    and:

    JR65074 Non-Administrator user can access features that are restricted to an
    Administrator user
    DT160237 InfoSphere Information Server is affected by a session management
    vulnerability (CVE-2022-41291)

    ========
    REPLACES
    ========

    admin-ui.war
    isf-admin-console.war

    Or change any settings, referring to access permissions, for example?

    Thank you.




    ------------------------------
    Rafael Nery
    ------------------------------

    #DataIntegration