• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact

Doug Bidwell

  • IBM i PTF Guide, Volume 27, Number 23

    June 9, 2025 Doug Bidwell

    It’s pretty quiet this week, which is good. We gave you a lot of stuff to do last week anyway, so now you can really get caught up.

    The important thing is a new security vulnerability, which is in Security Bulletin: IBM Rational Developer for i is affected by an unspecified Java runtime encryption vulnerability (CVE-2025-21587). You can find out more about this issue with RDi at this link. The affected releases include Rational Developer for i 9.8.0.0 through 9.8.0.4, and the recommended fix is to install the RDi 9.8.0.5 update.

    Here is the rundown of PTF Groups by …

    Read more
  • IBM i PTF Guide, Volume 27, Numbers 21 And 22

    June 2, 2025 Doug Bidwell

    It is once again “ketchup week” here at The Four Hundred thanks to the Memorial Day holiday last week in the United States, and that means you get two IBM i PTF Guides for the price of one this week.

    So let’s start with Volume 27 Number 21 dated May 24. There is a whole bunch of stuff to deal with.

    First, there is a flash alert: IBM i HTTP Server Validation List Authentication Suddenly Fails After IBM i HTTP Group PTF Apply. You can find out more about this here. IBM says: “If you have applied one of …

    Read more
  • IBM i PTF Guide, Volume 27, Number 20

    May 19, 2025 Doug Bidwell

    Brace yourselves, everyone. There are seven security vulnerabilities that you have to pay attention to this week for the IBM i platform. Remember, as security guru Carol Woodbury is fond of saying: the IBM i platform is not the most secure platform in the world, but the most securable platform in the world. You must be ever-vigilant and keep it secure by patching holes and killing bugs.

    So, without further fuss, let’s dive in and take them in order.

    One is Security Bulletin: IBM i is vulnerable to a machine-in-the-middle attack due to mishandling error codes when verifying the host …

    Read more
  • IBM i PTF Guide, Volume 27, Number 19

    May 12, 2025 Doug Bidwell

    Welcome to this week in IBM i Land. And we will start out by warning you to watch out for the defective PTFs listing this week.

    And now, to a security bulletin and a patches to fix it and a warning about a vulnerability that has not been patched.

    First the one that has been patched, which is in Security Bulletin: IBM i is vulnerable to an authentication and authorization attack due to incorrect validation processing in IBM i Netserver [CVE-2025-3218] and which you can see more about at this link. The IBM i PTF numbers for 5770-999 contain …

    Read more
  • IBM i PTF Guide, Volume 27, Number 18

    May 5, 2025 Doug Bidwell

    Welcome to May, and we start out with PH65941, a notice from Big Blue that IBM WebSphere Application Server is vulnerable to server-side request forgery (CVE-2025-27907 CVSS 4.1). You can check out this link for more details. IBM says that the fix for this APAR is set to be included with WebSphere Application Server 8.5.5.28 and 9.0.5.24. We are not sure when that will happen.

    Here is the rundown of PTF Groups by IBM i release level since we last published:

    PTF Groups 7.6:

    • HIPERs – High Impact Pervasive
    • Group Security
    • Performance Tools
    • IBM HTTP Server for i
    • Content
    …

    Read more
  • IBM i PTF Guide, Volume 27, Number 17

    April 28, 2025 Doug Bidwell

    Just a reminder that as part of the April 8 announcements, IBM Software Support content is changing to require entitlement check for software patches. See more at this link, but the gist of it is that IBM Software Support Troubleshooting, Question & Answer, and How To documents are changing to require entitlement. This means that you will be required to log on with an IBMid that has proper entitlement before viewing the entire document.

    Also this week, there is Security Bulletin: IBM WebSphere Application Server is vulnerable to server-side request forgery (CVE-2025-27907), which you can find out more about …

    Read more
  • IBM i PTF Guide, Volume 27, Number 16

    April 23, 2025 Doug Bidwell

    This week, we bring you two security vulnerabilities and an import HIPER for firmware updates for Power Systems iron. Let’s start with the firmware.

    There is new microcode for Firmware 950 .. 950.D1, which you can find out more about at this link here, and new microcode for Firmware 950 .. 950.E0, which you can read all about at that link there. These are HIPERs and affect the following hardware:

    • Power System S914 Server (9009-41A)
    • Power System S922 Server (9009-22A)
    • Power System S924 Server (9009-42A)

    Now for the vulnerabilities. First, we have Security Bulletin: IBM i 7.6 is …

    Read more
  • IBM i PTF Guide, Volume 27, Number 15

    April 14, 2025 Doug Bidwell

    There are so many announcements, and one of the big ones is ACS 1.1.9.8! We downloaded the new ACS and we have used this for a day, and so far there are no known issues at this time. We suggest treading lightly with this tool until after general availability on April 18. But it is looking good so far, though!

    There is also a new security vulnerability, which is Security Bulletin: IBM i is vulnerable to an out-of-bounds write in NTP services due to multiple vulnerabilities. More information available at this link. The issue can be addressed by applying …

    Read more
  • IBM i PTF Guide, Volume 27, Number 14

    April 8, 2025 Doug Bidwell

    If you need a little something to wake you up, or a little night reading before you  drift off to sleep, check out the Known Issues And Fix Information database at Big Blue for the IBM platform, which you can see here. The IBM i PTF Guide is meant to save you from having to be familiar with this, of course. But it can’t hurt to be aware of this database.

    Here is the rundown of PTF Groups by IBM i release level since we last published:

    PTF Groups 7.5:

    • HIPERs (High Impact/Pervasive)
    • Java
    • Backup Recovery Solutions
    • Content Manager
    …

    Read more
  • IBM i PTF Guide, Volume 27, Number 13

    April 2, 2025 Doug Bidwell

    Good day, good people of IBM i Land. This week we start out with two security vulnerabilities and a known issue to beware of the BLOB!

    Let’s start with the security vulnerabilities.

    First we have Security Bulletin: IBM WebSphere Application Server Liberty is vulnerable to a denial of service due to Netty (CVE-2025-25193), which you can find out more about at this link. IBM WebSphere Application Server Liberty versions 21.0.0.2 through 25.0.0.3 are affected.

    Second, we have Security Bulletin: IBM WebSphere Application Server Liberty is vulnerable to a denial of service due to Apache CXF (CVE-2025-23184), and here is …

    Read more

Previous Articles

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Big Blue Raises IBM i License Transfer Fees, Other Prices
  • Keep The IBM i Youth Movement Going With More Training, Better Tools
  • Remain Begins Migrating DevOps Tools To VS Code
  • IBM Readies LTO-10 Tape Drives And Libraries
  • IBM i PTF Guide, Volume 27, Number 23
  • SEU’s Fate, An IBM i V8, And The Odds Of A Power13
  • Tandberg Bankruptcy Leaves A Hole In IBM Power Storage
  • RPG Code Generation And The Agentic Future Of IBM i
  • A Bunch Of IBM i-Power Systems Things To Be Aware Of
  • IBM i PTF Guide, Volume 27, Numbers 21 And 22

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle