Gen 8.6 Vulnerability in z/OS Common Modules Id 25492
search cancel

Gen 8.6 Vulnerability in z/OS Common Modules Id 25492

book

Article ID: 391086

calendar_today

Updated On:

Products

Gen - Host Encyclopedia

Issue/Introduction

It is understood it describes a possible but not high urgent security problem (because of the security prerequisites of an attacking person) with a possible misuse of the globdata user/password-information. These fields are especially used in or for Client-server-style applications which have to transport this information in order to check the users authority. So Mainframe-standalone-applications (like z/OS Batch or a 3270-CICS-application)  would not be affected. Is that conclusion correct?

Environment

z/os GEN 8.6

Resolution

No the security vulnerability mentioned in the given advisory does not impact Mainframe-standalone-applications (like z/OS Batch or a 3270-CICS-application). MFDSA 25492 covers a Server-to-Server part of the Cooperative applications.