A fix is available
APAR status
Closed as program error.
Error description
CICS TS 5.3 EXEC CICS VERIFY PASSWORD with blank userid or blank password cause message DFHUS0002 with code 030B and 0309 to be issued and system dumps to be taken. There are two different exception codes : DUMP4 US 0309 USAD *EXC* Exception-unknown FUNCTION(VERIFY_PASSWORD) This US0002 is taken by using CECI to XCTL to user SIGNON program with a COMMAREA supplying USERID but no PASSWORD Trace shows : AP E160 EXEC ENTRY VERIFY AT X'AD60D2B2','USERID SM 0301 SMGF ENTRY GETMAIN 2A7314E8 , 0000001E,10 SM 0302 SMGF EXIT GETMAIN/OK 00071000 US 0301 USAD ENTRY VERIFY_PASSWORD 6,USERID,00000000 , 00 DD 0301 DDLO ENTRY LOCATE 2A800FB0,2B2CE760,USD1 DD 0302 DDLO EXIT LOCATE/EXCEPTION NOT_FOUND,40F1F07A , US 0301 USAD ENTRY ADD_USER_WITH_PASSWORD NON_TERMINAL_SIGN_ON, XS 0601 XSPW ENTRY INQUIRE_PASSWORD_DATA 6,USERID,00000000 , XS FE01 XSSB ENTRY INQUIRE_PASSWORD_DATA 6,USERID,00000000 , XS FE04 XSSB *EXC* INQUIRE_PASSWORD_DATA/INVALID_PASSWORD,8 XS 0602 XSPW EXIT INQUIRE_PASSWORD_DATA/PASSWORD_REQUIRED, US 0302 USAD EXIT ADD_USER_WITH_PASSWORD/PASSWORD_REQUIRED US 0309 USAD *EXC* Exception-unknown VERIFY_PASSWORD,6,USERID, . . DUMP5 : US 030B USAD *EXC* Invalid-parameters ADD_USER_WITH_PASSWORD This dump is generated with CECI as above COMMAREA has no USERID no PW. DFHUS0002 should not be issued when a program issues EXEC CICS VERIFY PASSWORD with a zero length USERID or PASSWORD.
Local fix
Problem summary
**************************************************************** * USERS AFFECTED: All. * **************************************************************** * PROBLEM DESCRIPTION: An EXEC CICS VERIFY PASSWORD or an * * EXEC CICS VERIFY PHRASE with either a * * blank userid or with a blank password * * causes message DFHUS0002 with code * * x'030B' or x'0309' to be issued and a * * system dump code US0002. * **************************************************************** * RECOMMENDATION: . * **************************************************************** In a CICS region started with SIT parameter SECVFYFREQ=USRDELAY an EXEC CICS VERIFY PASSWORD or an EXEC CICS VERIFY PHRASE with either a blank userid or with a blank password causes message DFHUS0002 with code x'030B' or x'0309' to be issued and a system dump code US0002. Additional Keywords: MSGDFHUS0002
Problem conclusion
The VERIFY_PASSWORD procedure is changed to check for a PASSWORD_REQUIRED condition which indicates a blank password and instead treats it as an INVALID_PASSWORD condition. The ADD_USER_PROCESSING procedure is changed to check for a blank userid which it disallows.
Temporary fix
Comments
APAR Information
APAR number
PI83797
Reported component name
CICS TS Z/OS V5
Reported component ID
5655Y0400
Reported release
000
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Special Attention
NoSpecatt / Xsystem
Submitted date
2017-06-29
Closed date
2017-11-03
Last modified date
2017-12-02
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
UI51672 UI51673 UI51674 UI51675
Modules/Macros
DFHUSAD
Fix information
Fixed component name
CICS TS Z/OS V5
Fixed component ID
5655Y0400
Applicable component levels
R000 PSY UI51675
UP17/11/17 P F711
R100 PSY UI51674
UP17/12/02 P F711
R800 PSY UI51672
UP17/11/17 P F711
R900 PSY UI51673
UP17/11/17 P F711
Fix is available
Select the PTF appropriate for your component level. You will be required to sign in. Distribution on physical media is not available in all countries.
[{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSGMGV","label":"CICS Transaction Server"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"5.3","Edition":"","Line of Business":{"code":"LOB35","label":"Mainframe SW"}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SG19M","label":"APARs - z\/OS environment"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"5.3","Edition":"","Line of Business":{"code":"","label":""}}]
Document Information
Modified date:
02 December 2017