IBM Platform LSF 9.1.3 Fix 503981 Readme File
Abstract
P102716. The fix is for the lsf-9.1.3-build501909 for LSF Data Manager to enhance LSF security of authorizing user credentials to prevent attacking by preloading getuid function. This enhance address the issues in CVE-2018-1724.
Description
This fix is for the lsf-9.1.3-build501909 iFix for LSF Data Manager to address the issues in CVE-2018-1724.
Prerequisites: Install the LSF iFix "lsf-9.1.3-build501909" in the cluster before installing this fix.
Readme File for: IBM® Platform LSF
Product/Component Release: 9.1.3
Update Name: Fix 503981
Fix ID: LSF-9.1.3-build503981
Publication Date: 30 October 2018
Last Modified Date: 30 October 2018
Contents
1. List of Fixes
2. Download Location
3. Product or Components Affected
4. System Requirements
5. Installation and Configuration
6. List of Files
7. Product Notifications
8. Copyright and Trademark Information
1. List of Fixes
P102716
2. Download Locations
Download Fix 503981 from the following location: http://www.ibm.com/eserver/support/fixes/
3. Product or Components Affected
Affected product or components include:
LSF/dmd LSF/bdata LSF/bstage LSF/eauth.cve LSF/bsub LSF/mbatchd
4. System Requirements
linux2.6-glibc2.3-x86_64
linux3.10-glibc2.17-ppc64le
5. Installation and Configuration
5.1 Before installation
(LSF_TOP=Full path to the top-level installation directory of LSF.)
1) Log on to the LSF master host as root
2) Set your environment:
- For csh or tcsh: % source LSF_TOP/conf/cshrc.lsf
- For sh, ksh, or bash: $ . LSF_TOP/conf/profile.lsf
5.2 Installation steps
1) Go to the patch install directory: cd $LSF_ENVDIR/../9.1/install/
2) Copy the patch file to the install directory $LSF_ENVDIR/../9.1/install/
3) Run patchinstall: ./patchinstall <patch>
5.3 After installation
1)Log on to the LSF master host as root
2)Run badmin mbdrestart
3)Run bdata admin reconfig
5.4 Uninstallation
1) Log on to the LSF master host as root
2) Go to the patch install directory: cd $LSF_ENVDIR/../9.1/install/
3) Run ./patchinstall -r <patch>
4) Run badmin mbdrestart
5) Run bdata admin reconfig
6. List of Files
dmd bdata bstage eauth.cve bsub mbatchd
7. Product Notifications
To receive information about product solution and patch updates automatically, subscribe to product notifications on the My notifications page ( www.ibm.com/support/mynotifications) on the IBM Support website (support.ibm.com). You can edit your subscription settings to choose the types of information you want to get notification about, for example, security bulletins, fixes, troubleshooting, and product enhancements or documentation changes.
8. Copyright and Trademark Information
©Copyright IBM Corporation 2018
U.S. Government Users Restricted Rights - Use, duplication or disclosure restricted by GSA ADP Schedule Contract with IBM Corp.
IBM®, the IBM logo, and ibm.com® are trademarks of International Business Machines Corp., registered in many jurisdictions worldwide. Other product and service names might be trademarks of IBM or other companies. A current list of IBM trademarks is available on the Web at "Copyright and trademark information" at www.ibm.com/legal/copytrade.shtml.