IBM Support

APARs fixed in IBM Spectrum Protect Operations Center Version 8.1 interim fix levels

Question & Answer


Question

What APARs and security vulnerabilities were resolved in interim fix (patch) levels for IBM Spectrum Protect Operations Center V8.1?

Answer

The following tables list APARs and security vulnerabilities addressed in interim fix levels for IBM Spectrum Protect Operations Center V8.1 users.

Find the latest IBM Spectrum Protect downloads by going to Fixes by Version.
To view APARs fixed in IBM Spectrum Protect Operations Center Version 8.1.0, see technote 1992700.

To view APARs fixed in IBM Spectrum Protect Operations Center V8.1 fix-pack levels, see technote 1998545.

Tip: In the following tables, Rel represents the release number in which the issue was detected. In some cases, the operating system is identified (A = AIX, L = Linux, S = Solaris, H = HP-UX, and W = Windows). For example, 63W denotes V6.3 running on a Windows operating system.

Security vulnerabilities fixed in level 8.1.13.300
Security vulnerabilities fixed in level 8.1.13.200
Security vulnerabilities fixed in level 8.1.13.100
APARs fixed in level 8.1.12.100
Security vulnerabilities fixed in level 8.1.11.100
Security vulnerabilities fixed in level 8.1.10.200
APARs fixed in level 8.1.8.100
APARs fixed in level 8.1.6.200
APARs fixed in level 8.1.6.100
APARs fixed in level 8.1.5.100
APARs fixed in level 8.1.1.100

Operations Center interim fix packs 8.1.10.200, 8.1.11.100, 8.1.13.100, 8.1.13.200 and 8.1.13.300 did not include APAR updates.

Security vulnerabilities fixed in level 8.1.13.300

Security vulnerability
Abstract
CVE-2021-44832 Vulnerability in Apache Log4j may affect IBM Spectrum Protect Operations Center

Security vulnerabilities fixed in level 8.1.13.200

Security vulnerability
Abstract
CVE-2021-45105, CVE-2021-45046 Vulnerabilities in Apache Log4j affect IBM Spectrum Protect Operations Center
 

Security vulnerabilities fixed in level 8.1.13.100

Security vulnerability
Abstract
CVE-2021-44228 Vulnerability in Apache Log4j affects IBM Spectrum Protect Operations Center

APARs fixed in level 8.1.12.100

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT36520 5608E01UI 815
UNABLE TO ADD SPECTRUM PROTECT PLUS SERVER TO MONITOR IN THE OPERATIONS CENTER AFTER UPDATING PLUS CERTIFICATE.
IT36681 5608E01UI 810
OPERATIONS CENTER "RUN NOW" BUTTON ON THE STORAGE RULES PANEL IS GREYED OUT FOR NON-SYSTEM PRIVILEGES USERS.

Security vulnerabilities fixed in level 8.1.11.100

Security vulnerability
Abstract
CVE-2020-14782 An unspecified vulnerability in Java™ SE related to the Libraries component could allow an unauthenticated attacker to cause no confidentiality impact, low integrity impact, and no availability impact.
CVE-2020-27221 Eclipse OpenJ9 is vulnerable to a stack-based buffer overflow when the virtual machine or JNI natives are converting from UTF-8 characters to platform encoding.
CVE-2020-4955 IBM Spectrum Protect Operations Center might allow a remote attacker to run arbitrary code on the system.
CVE-2020-4954 IBM Spectrum Protect Operations Center might allow a remote attacker to bypass authentication restrictions.
CVE-2020-4956 IBM Spectrum Protect Operations Center is vulnerable to a denial of service attack.

Security vulnerabilities fixed in level 8.1.10.200

Security vulnerability
Abstract
CVE-2020-4955 IBM Spectrum Protect Operations Center might allow a remote attacker to execute arbitrary code on the system.
CVE-2020-4954 IBM Spectrum Protect Operations Center might allow a remote attacker to bypass authentication restrictions.
CVE-2020-4956 IBM Spectrum Protect Operations Center is vulnerable to a denial of service attack.
 

APARs fixed in level 8.1.8.100

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT30780 5608E01UI 816
OPERATIONS CENTER CRASH WITH OUT OF MEMORY IN JAVA HEAP SPACE


 

APARs fixed in level 8.1.6.200

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT27254 5608E01UI 81X
"ANR1504I DEFINE CLIENTACTION..NO MATCHING DOMAINS" ERROR MESSAGE WHEN RUNNING ONE-TIME CLIENT ACTION BY OPERATION CENTER


 

APARs fixed in level 8.1.6.100

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT26982 IT26982 5608E01UI 81X SQL ERRORS IN ACTIVITY LOG AFTER OC UPGRADE TO V8.1.6 CAUSING THE ""TAPE DEVICES"" PANEL NOT BEING ABLE TO RETRIEVE ANY DATA"


 

APARs fixed in level 8.1.5.100

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT24730 IT24730 5698ISMSV 81W OPERATIONS CENTER 8.1.5 "SECURITY NOTIFICATIONS" MAY RETURN "CANNOT RETRIEVE DATA"
IT25686 IT25686 5608E01UI 81X OPERATIONS CENTER LEVEL 2 PANELS ARE NOT BEING UPDATED
IT25788 IT25788 5608E01UI 81X OPERATIONS CENTER "OPERATIONAL REPORT" FOR CLIENT SUCCESS DOES NOT INCLUDE MISSED BACKUPS


 

APARs fixed in level 8.1.1.100

APAR
Information
About Reported Issue
(APAR, CompId, Rel)
Abstract
IT20485 IT20485 5608E01UI 710 OPERATIONS CENTER INCORRECTLY OPENS A PORT
IT20113 IT20113 5608E01UI 717 IBM SPECTRUM PROTECT OPERATIONS CENTER CAN GENERATE SESSIONSENDING ABNORMALLY WITH ANR0568W AND ANR0482W MESSAGES

[{"Type":"SW","Line of Business":{"code":"LOB26","label":"Storage"},"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSEQVQ","label":"IBM Spectrum Protect"},"ARM Category":[{"code":"a8m500000008Pb4AAE","label":"General"}],"ARM Case Number":"","Platform":[{"code":"PF002","label":"AIX"},{"code":"PF016","label":"Linux"},{"code":"PF033","label":"Windows"}],"Version":"8.1.1;8.1.10;8.1.11;8.1.5;8.1.6;8.1.8"}]

Document Information

Modified date:
14 January 2022

UID

swg22006130