IBM Platform LSF 9.1.3 Fix 503981 Readme File 

Abstract

P102716. The fix is for the lsf-9.1.3-build501909 for LSF Data Manager to enhance LSF security of authorizing user credentials to prevent attacking by preloading getuid function. This enhance address the issues in CVE-2018-1724.


Description

This fix is for the lsf-9.1.3-build501909 iFix for LSF Data Manager to address the issues in CVE-2018-1724.


Prerequisites: Install the LSF iFix "lsf-9.1.3-build501909" in the cluster before installing this fix.


Readme File for: IBM® Platform LSF

Product/Component Release: 9.1.3

Update Name: Fix 503981

Fix ID: LSF-9.1.3-build503981

Publication Date: 30 October 2018

Last Modified Date: 30 October 2018


Contents

1. List of Fixes

2. Download Location

3. Product or Components Affected

4. System Requirements

5. Installation and Configuration

6. List of Files

7. Product Notifications

8. Copyright and Trademark Information


1. List of Fixes

P102716


2. Download Locations

Download Fix 503981 from the following location: http://www.ibm.com/eserver/support/fixes/


3. Product or Components Affected

Affected product or components include:

LSF/dmd LSF/bdata LSF/bstage LSF/eauth.cve  LSF/bsub LSF/mbatchd


4. System Requirements

linux2.6-glibc2.3-x86_64

linux3.10-glibc2.17-ppc64le


5. Installation and Configuration

5.1 Before installation

(LSF_TOP=Full path to the top-level installation directory of LSF.)

1) Log on to the LSF master host as root

2) Set your environment:

- For csh or tcsh: % source LSF_TOP/conf/cshrc.lsf

- For sh, ksh, or bash: $ . LSF_TOP/conf/profile.lsf

5.2 Installation steps

1) Go to the patch install directory: cd $LSF_ENVDIR/../9.1/install/

2) Copy the patch file to the install directory $LSF_ENVDIR/../9.1/install/

3) Run patchinstall: ./patchinstall <patch>


5.3 After installation

1Log on to the LSF master host as root

2Run badmin mbdrestart

3Run bdata admin reconfig


5.4 Uninstallation

1) Log on to the LSF master host as root

2) Go to the patch install directory: cd $LSF_ENVDIR/../9.1/install/

3) Run ./patchinstall -r <patch>

4) Run badmin mbdrestart

5) Run bdata admin reconfig


6. List of Files

dmd  bdata  bstage  eauth.cve bsub mbatchd


7. Product Notifications

To receive information about product solution and patch updates automatically, subscribe to product notifications on the My notifications page ( www.ibm.com/support/mynotifications) on the IBM Support website (support.ibm.com). You can edit your subscription settings to choose the types of information you want to get notification about, for example, security bulletins, fixes, troubleshooting, and product enhancements or documentation changes.



8. Copyright and Trademark Information

©Copyright IBM Corporation 2018


U.S. Government Users Restricted Rights - Use, duplication or disclosure restricted by GSA ADP Schedule Contract with IBM Corp.

IBM®, the IBM logo, and ibm.com® are trademarks of International Business Machines Corp., registered in many jurisdictions worldwide. Other product and service names might be trademarks of IBM or other companies. A current list of IBM trademarks is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.