Hardware Management Console Readme For use with HMC Version 10 Release 1 M1022 Date: 29 September 2023 (C) Copyright International Business Machines Corp., 2023 All rights reserved. Contents <#ibm-content> The information in this Readme contains the fix list and other package information about the Hardware Management Console. * PTF MF71296 <#MF71296> * PTF MF71297 <#MF71297> * Package information <#package> * Fixes Included <#fixes> * Installation <#install> Terminology *x86* - This term is used to reference the Intel hypervisors (KVM, VMWare, Xen) on which Virtual HMC can be installed. *Note*: HMC V10R1 release for x86 is not supported on bare metal (7042 hardware appliances). *ppc64 or ppc64le* - describes the Linux code that is compiled to run on Power-based servers or LPARS (Logical Partitions) PTF MF71296 HMC V10 R1 M1022.2 - for vHMC for x86_64 hypervisors (5765-VHX) This package represents an interim fix for the HMC V10 R1 M1022 for vHMC on x86_64 hypervisors. You can also reference this package by APAR MB04420 and PTF MF71296.This PTF can be installed on HMC V10 R1 M1022. *Note:* This PTF supersedes MF71188. /Package information/ Package name Size Checksum (sha1sum) APAR# PTF# MF71296_x86.iso 4579207168 95223a0b1b9fc98bdbfe9794df723ea4fa08d918 MB04420 MF71296 Splash Panel information (or lshmc -V output) "version= Version: 10 Release: 1 Service Pack: 1022 HMC Build level 2309220317 MF70891 - HMC V10R1 M1022 MF71296 - iFix for HMC V10R1 M1022 ","base_version=V10R1 " PTF MF71297 HMC V10 R1 M1022.2 - for 7063 Hardware or vHMC for PowerVM (5765-HMB) This package represents an interim fix for the HMC V10 R1 M1022 on 7063 machine type or vHMC for PowerVM. You can reference this package by APAR MB04421 and PTF MF71297. This PTF can be installed on HMC V10 R1 M1022. *Note*: This PTF supersedes MF71189. /Package information/ Package name Size Checksum (sha1sum) APAR# PTF# MF71297_ppc.iso 4568178688 5527c31d6312d580dd13ca9b67d39a310aeb8dfe MB04421 MF71297 Splash Panel information (or lshmc -V output) "version= Version: 10 Release: 1 Service Pack: 1022 HMC Build level 2309220317 MF70892 - HMC V10R1 M1022 MF71297 - iFix for HMC V10R1 M1022 ","base_version=V10R1 " *General fixes* * Added additional reporting for SRC E212E161 when too many open files are detected on the HMC. * Fixed an issue causing the asmmenu command to always fail to launch the ASM menu window. The following Firefox error pops up instead: "/Firefox is already running but is not responding. To use Firefox, you must first close the existing Firefox process, restart your device, or use a different profile./" * Added a workaround to prevent the Firefox browser on the local HMC console from attempting to connect to Google addresses such as "201.181.244.35.bc.googleusercontent.com". The workaround is to disable DNS in Firefox. To disable DNS in Firefox and relaunch the Firefox browser on the local console, log in as user hscpe with role hmcpe and run "*runsig -s 711*". To reenable DNS in Firefox and relaunch the Firefox browser on the local console, log in as user hscpe with role hmcpe and run "*runsig -s 712*". *Security fix* * Fixed vulnerability: CVE-2023-38280. Removed support for all sed command options in the restricted shell. **Previously released fixes also included in this PTF: * * *MF71296/MF71297* 08/11/23 * Fixed a timing issue that can cause an Enterprise BMC-based system to be in the No Connection state and the VMI connection to show as unavailable even though the VMI is actually connected to the HMC. This can occur when multiple Enterprise BMC-based systems are concurrently being connected to the HMC after an HMC restart. * Fixed an issue that caused the HMC to fail to fully power on and stop at the emergency shell when it was restarted following an HMC update that was performed after critical HMC data was restored. * Added a workaround for the issue where a keyboard configured with a non-US layout always changes to a US layout after it is disconnected and reconnected to the HMC. The workaround to reset the keyboard layout to its original non-US configuration is to log in as user hscpe with role hmcpe and execute "runsig -s 710". Restarting the HMC also resets the keyboard layout to its original non-US configuration. * Fixed Apache Tomcat vulnerability: CVE-2023-28709. * Fixed Java vulnerabilities: CVE-2023-21930, CVE-2023-21967, CVE-2023-21954, CVE-2023-21939, CVE-2023-21968 and CVE-2023-21937. Installation Installation instructions for HMC Version 10 upgrades and corrective service can be found at these locations: Upgrading or restoring HMC Version 10 Updating, upgrading, and migrating your HMC machine code Update(s) for HMC V10R1M1010