AdminUI Java Vulnerabilities
search cancel

AdminUI Java Vulnerabilities

book

Article ID: 205813

calendar_today

Updated On:

Products

SITEMINDER

Issue/Introduction

The security scanning tool found the following vulnerable instances of Java installed on the SiteMinder admin UI location.

Path: <ADMIN_UI_HOME>\adminui\runtime\bin\java.exe

Path: <ADMIN_UI_HOME>\adminui\runtime\jre\bin\java.exe

Here is the upgrade option suggested by the security team.

Installed version: 1.8.0_144

Fixed version: 1.8.0_231

 

How do I update the Java for the SiteMinder admin UI?

Environment

Release : 12.8.03

Component : SITEMINDER - AdminUI

Resolution

Instructions provided for upgrading the AdminUI Java:

  • Download the latest release of AdpoptOpenJDK 8. (https://adoptopenjdk.net/)
  • Stop Admin UI
  • Backup and or tar runtime folder at <ADMIN_UI_HOME>/adminui/runtime
  • Overwrite the current release of Java in 'runtime' with what was downloaded from AdpoptOpenJDK
  • Start Admin UI

Additional Information

Please note that it is only valid to upgrade within the same major release of Java.  In this instance, the 12.8.x Admin UI uses Java 1.8.x, so this particular Admin UI can be upgraded to any newer 1.8 release of Java.