Readme File for IBM® Spectrum
Symphony 7.2.0.2 Interim Fix 494326
Readme
File for: IBM Spectrum Symphony
Product Release: 7.2.0.2
Update Name: Interim Fix 494326
Fix ID: sym-7.2.0.2_x86_64-build494326
Publication Date: July 20, 2018
This
interim fix resolves an XML Entity Expansion (XXE) vulnerability in IBM
Spectrum Symphony 7.2.0.2.
Contents
1.
List of fixes
2.
Download location
3.
Product and components affected
4.
Installation and configuration
5.
Uninstallation
6.
List of files
7.
Copyright and trademark information
1.
List of fixes
APAR: P102505
2.
Download location
Download interim
fix 494326 from the following location: https://www.ibm.com/eserver/support/fixes/
3.
Product and components affected
Component name, Platform, Fix ID:
PMC, Linux x86_64,
sym-7.2.0.2_x86_64-build494326
4.
Installation and configuration
Follow the instructions in this
section to download and install this interim fix in your cluster.
System requirements
Linux x86_64
Before installation
1.
Log on to the master host as the
cluster administrator and stop the WEBGUI service:
$ egosh user logon -u Admin -x Admin
$ egosh service stop WEBGUI
2. For recovery purposes, log on to each management host as the cluster
administrator and back up the following
files:
cd
$EGO_TOP
tar -cvf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/api/symping/SympingConfSetting.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/appConf/ExportAppProfileAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/appConf/ImportAppProAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/application/RegisterAppXmlAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/common/FormatXMLAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/srvpackage/ConfigurePackageProfileAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/srvpackage/ExportDeploymentXmlAction.class
tar -uf backup.tar wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/wizard/CreateAppWizardOperator.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/wizard/importAppProActionWizard.class
tar -uf backup.tar gui/7.2/soamPrivateLib/soamgui.jar
tar -uf backup.tar wlp/usr/shared/resources/rest/7.2/soamgui.jar
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
tar -uf backup.tar wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/appConf/ExportAppProfileAction.class
tar -uf backup.tar wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/appConf/ImportAppProAction.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/applications/AddApplicationAction.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
tar -uf backup.tar
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
tar -uf backup.tar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
tar -uf backup.tar gui/3.6/lib/egogui.jar
tar -uf backup.tar gui/3.6/lib/newegogui.jar
3. Download
the sym-7.2.0.2_x86_64-build494326.tar.gz
file.
Installation
1. Log on to each management host as the cluster
administrator, decompress the sym-7.2.0.2_x86_64-build494326.tar.gz file to the top-level installation directory.
For example, enter:
$ tar
zxfo sym-7.2.0.2_x86_64-build494326.tar.gz -C
$EGO_TOP/
2. Delete
all subdirectories and files from the following directories:
$
rm -rf $EGO_TOP/gui/work/*
$
rm -rf $EGO_TOP/gui/workarea/*
$
rm -rf $WLP_OUTPUT_DIR/webgui_hostname/gui/workarea/*
3. Clear your
browser cache.
4. Start the
WEBGUI service:
$ egosh service start WEBGUI
5.
Uninstallation
If required, follow the instructions
in this section to uninstall this interim fix from your cluster.
1.
Log on to the master host as the
cluster administrator and stop the WEBGUI service:
$ egosh user
logon -u Admin -x Admin
$ egosh service
stop WEBGUI
2.
Log on to each management host as the cluster administrator and
restore your backup:
$ cd $EGO_TOP
$ tar -xvf backup.tar
3.
Delete all subdirectories and files
from the following directories:
$
rm -rf $EGO_TOP/gui/work/*
$ rm -rf $EGO_TOP/gui/workarea/*
$ rm -rf $WLP_OUTPUT_DIR/webgui_hostname/gui/workarea/*
4.
Clear your browser cache.
5.
Start the WEBGUI service:
$ egosh service
start WEBGUI
6.
List of files
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/api/symping/SympingConfSetting.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/appConf/ExportAppProfileAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/appConf/ImportAppProAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/application/RegisterAppXmlAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/common/FormatXMLAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/srvpackage/ConfigurePackageProfileAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/srvpackage/ExportDeploymentXmlAction.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/wizard/CreateAppWizardOperator.class
wlp/usr/servers/gui/apps/soam/7.2/soamgui/WEB-INF/classes/com/platform/soam/gui/web/wizard/importAppProActionWizard.class
gui/7.2/soamPrivateLib/soamgui.jar
wlp/usr/shared/resources/rest/7.2/soamgui.jar
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/application/RegisterAppXmlAction.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/general/mapreduce/gui/web/wizard/CreateAppWizardOperator.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/appConf/ExportAppProfileAction.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/appConf/ImportAppProAction.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/action/applications/AddApplicationAction.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationRestResource.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrestv1/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
wlp/usr/servers/rest/apps/soam/7.2/pmrrest/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
wlp/usr/servers/gui/apps/soam/7.2/symgui/WEB-INF/classes/com/platform/gui/pmr/web/rest/ApplicationV1RestResource.class
gui/3.6/lib/egogui.jar
gui/3.6/lib/newegogui.jar
7.
Copyright and trademark
information
© Copyright IBM
Corporation 2018
U.S. Government
Users Restricted Rights - Use, duplication or disclosure restricted by GSA ADP
Schedule Contract with IBM Corp.
IBM®, the IBM
logo, and ibm.com® are trademarks of International Business Machines Corp.,
registered in many jurisdictions worldwide. Other product and service names
might be trademarks of IBM or other companies. A current list of IBM trademarks
is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.