IBM Support

IT43175: Third party component updates in fix pack 9.3.0.5

Subscribe to this APAR

By subscribing, you receive periodic emails alerting you to the status of the APAR, along with a link to the fix after it becomes available. You can track this item individually or track all items by product.

Notify me when this APAR changes.

Notify me when an APAR for this component changes.

 

APAR status

  • Closed as program error.

Error description

  • List of third party packages updated in fix pack 9.3.0.5
    

Local fix

Problem summary

  • ****************************************************************
    USERS AFFECTED:
    Users of the IBM MQ components affected by the third party
    product list in the APAR conclusion.
    
    
    Platforms affected:
    MultiPlatform
    
    ****************************************************************
    PROBLEM DESCRIPTION:
    A new version for some third party packages included in IBM MQ
    are available, and updated in MQ Fixpack 9.3.0.5
    

Problem conclusion

  • The following updates are included in this APAR :
    
    - apache-ant for MFT 1.10.13
    - apache-qpid-proton-j 0.34.1
    - org.json.jar 20230227
    - Jetty 9.4.51.v20230217 for the Bridge to blockchain and Bridge
    to Salesforce
    - Hyperledger Fabric Gateway 2.2.7 for the Bridge to blockchain
    and Bridge to Salesforce
    - Hyperledger Fabric Gateway SDK 2.2.21 for the Bridge to
    blockchain and Bridge to Salesforce
    - IBM Security Directory Server LDAP client 6.4.0.26
    - libcurl 8.0.1
    - libedit 20221030-3.1
    - Liberty 22.0.0.12 + PH52079 + PH52095 for the Console and the
    REST API
    - OpenSSL for IBMi 3.0.8
    
    - JRE to 8.0.8.0 on AIX, Windows, Linux, and Solaris :
    
    --  IBM MQ has assessed the issues addressed in this update and
    will release an IBM MQ security bulletin for any vulnerabilities
    applicable to IBM MQ components? use of the Java APIs and
    runtime environment.
    Users who use the supplied IBM Java runtime to execute other
    code or applications not supplied with IBM MQ should review the
    complete list of vulnerabilities fixed to check applicability of
    any vulnerabilities based on the API usage of those
    applications:
    https://www.ibm.com/support/pages/java-sdk-security-vulnerabilit
    ies
    
    ---------------------------------------------------------------
    The fix is targeted for delivery in the following PTFs:
    
    Version    Maintenance Level
    v9.3 LTS   9.3.0.5
    
    
    The latest available maintenance can be obtained from
    'WebSphere MQ Recommended Fixes'
    http://www-1.ibm.com/support/docview.wss?rs=171&uid=swg27006037
    
    If the maintenance level is not yet available information on
    its planned availability can be found in 'WebSphere MQ
    Planned Maintenance Release Dates'
    http://www-1.ibm.com/support/docview.wss?rs=171&uid=swg27006309
    ---------------------------------------------------------------
    

Temporary fix

Comments

APAR Information

  • APAR number

    IT43175

  • Reported component name

    MQ BASE V9.3

  • Reported component ID

    5724H7291

  • Reported release

    930

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2023-02-21

  • Closed date

    2023-04-25

  • Last modified date

    2023-04-25

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    MQ BASE V9.3

  • Fixed component ID

    5724H7291

Applicable component levels

[{"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Product":{"code":"SSYHRD","label":"IBM MQ"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"9.3","Line of Business":{"code":"LOB45","label":"Automation"}}]

Document Information

Modified date:
26 April 2023