LU07466 and Security Advisory CVE-2022-1292 clarification
search cancel

LU07466 and Security Advisory CVE-2022-1292 clarification

book

Article ID: 252032

calendar_today

Updated On:

Products

IDMS

Issue/Introduction

This article clarifies the information regarding IDMS Server PTF LU07466 and Security Advisory CVE-2022-1292.

Environment

Release : All supported releases.
Component. IDMS Server

Resolution

The Security Advisory text implies that the problem resolved by LU07466 exists only at a certain maintenance level of IDMS/Server.

That is not the case. The problem is relevant for any IDMS Server client who is using the ODBC driver with the SSL option.

The problem is in OpenSSL version 1.1.1n which was the version in use prior to LU07466. The problem is resolved with OpenSSL version 1.1.1q which is provided with LU07466.