APAR status
Closed as program error.
Error description
Error Message: java.security.NoSuchAlgorithmException: no such algorithm: SHA1WithRSA for provider IBMJCEPlusFIPS . Stack Trace: testSignatureChunks(ibm.jceplus.junit.ibmjceplusfips.TestRSASign atureChunkUpdate)java.security.NoSuchAlgorithmException: no such algorithm: SHA1WithRSA for provider IBMJCEPlusFIPS at sun.security.jca.GetInstance.getService(GetInstance.java:99) at sun.security.jca.GetInstance.getInstance(GetInstance.java:218) at java.security.Signature.getInstance(Signature.java:398) at ibm.jceplus.junit.base.BaseTestRSASignatureChunkUpdate.testSigna tureChunkUpdate(BaseTestRSASignatureChunkUpdate.java:52) at ibm.jceplus.junit.base.BaseTestRSASignatureChunkUpdate.testSigna tureChunks(BaseTestRSASignatureChunkUpdate.java:45) at sun.reflect.NativeMethodAccessorImpl.invoke0(Native Method) at sun.reflect.NativeMethodAccessorImpl.invoke(NativeMethodAccessor Impl.java:90) at sun.reflect.DelegatingMethodAccessorImpl.invoke(DelegatingMethod AccessorImpl.java:55) at org.junit.internal.runners.JUnit38ClassRunner.run(JUnit38ClassRu nner.java:86) at org.junit.runners.Suite.runChild(Suite.java:128) at org.junit.runners.Suite.runChild(Suite.java:27) at org.junit.runners.ParentRunner$3.run(ParentRunner.java:290) at org.junit.runners.ParentRunner$1.schedule(ParentRunner.java:71) at org.junit.runners.ParentRunner.runChildren(ParentRunner.java:288 ) at org.junit.runners.ParentRunner.access$000(ParentRunner.java:58) at org.junit.runners.ParentRunner$2.evaluate(ParentRunner.java:268) at org.junit.runners.ParentRunner.run(ParentRunner.java:363) at junit.framework.JUnit4TestAdapter.run(JUnit4TestAdapter.java:38) at ibm.jceplus.junit.ibmjceplusfips.TestAll.main(TestAll.java:131) .
Local fix
Problem summary
The IBMJCEPlusFIPS provider did not have the support for SHA1WithRSA.
Problem conclusion
The SHA1WithRSA support was added for verification only to IBMJCEPlusFIPS(fips140-3). Signing is still not allowed. A fix is made to IBMJCEPlusFIPS (fips140-3) The associated Hursley RTC Problem Report is 149212 JVMs affected: Java 8 The fix was delivered for Java 8 SR8 FP10 (CR23_03) The affected jar is "ibmjceplus.jar". The build level of this jar for the affected releases is "20230504" . This APAR will be fixed in the following Releases: . IBM SDK, Java Technology Edition 8 SR8 FP10 (8.0.8.10) . Contact your IBM Product's Service Team for these Service Refreshes and Fix Packs. For those running stand-alone, information about the available maintenance can be found at: https://www.ibm.com/support/pages/java-sdk
Temporary fix
Comments
APAR Information
APAR number
IJ46911
Reported component name
SECURITY
Reported component ID
620700125
Reported release
270
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2023-05-20
Closed date
2023-05-24
Last modified date
2023-05-24
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
SECURITY
Fixed component ID
620700125
Applicable component levels
[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSNVBF","label":"Runtimes for Java Technology"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"270","Line of Business":{"code":"LOB36","label":"IBM Automation"}}]
Document Information
Modified date:
25 May 2023