IBM i PTF Guide, Volume 24, Number 31
August 3, 2022 Doug Bidwell
As often happens with systems software these days, there are a bunch of new security vulnerabilities with the IBM i stack that you need to be aware of.
First, there is Security Bulletin: OpenSSL for IBM i is vulnerable to arbitrary command execution (CVE-2022-2068), which you can find out more about at this link. The IBM i PTF numbers contain the fix for the vulnerability:
IBM i Release 5733-SC1 PTF Number 7.5 SI80588 7.4, 7.3, 7.2 SI80587
Then there is Security Bulletin: IBM WebSphere Application Server Liberty is vulnerable to Identity Spoofing (CVE-2022-22476), which you can find out more …
Read more