IBM Support

PH07963: GENERATING REPORT IN PDF FORMAT FOR "CWE SANS TOP 25 2011" WITH "ANNOTATED" OPTION THROWS OOM

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 

APAR status

  • Closed as program error.

Error description

  • OBSERVED BEHAVIOUR:
    While generating a report in PDF format from an assessment
    (example, WebGoat) file, throws out of memory error. This is
    noticed when the report format "CWE SANS Top 25 2011" option is
    selected with "annotated" option.
    
    EXPECTED BEHAVIOUR:
    The report should get generated in the specified format without
    any errors.
    

Local fix

Problem summary

  • ****************************************************************
    * USERS AFFECTED:                                              *
    * Any user who want to generate a PDF report off of their scan *
    * results and also have source code annotation in that report. *
    ****************************************************************
    * PROBLEM DESCRIPTION:                                         *
    * When a PDF report with source code annotation is generated   *
    * using AppScan Source for Analysis, the tool may some times   *
    * fail with Out of Memory error.                               *
    ****************************************************************
    * RECOMMENDATION:                                              *
    ****************************************************************
    

Problem conclusion

  • This issue is fixed in version 9.0.3.12 of AppScan source for
    Analysis.
    

Temporary fix

Comments

APAR Information

  • APAR number

    PH07963

  • Reported component name

    SEC APPSCAN SRC

  • Reported component ID

    5724Z3400

  • Reported release

    903

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2019-01-31

  • Closed date

    2019-03-27

  • Last modified date

    2019-03-27

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    SEC APPSCAN SRC

  • Fixed component ID

    5724Z3400

Applicable component levels

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSS9LM","label":"IBM Security AppScan Source for Automation"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"903","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}}]

Document Information

Modified date:
27 March 2019