• The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
Menu
  • The Four Hundred
  • Subscribe
  • Media Kit
  • Contributors
  • About Us
  • Contact
  • IBM i PTF Guide, Volume 27, Number 37

    September 15, 2025 Doug Bidwell

    This week in IBM i Land, we have two security bulletins, and new System Planning Tool adding the Power11 machines, and a bunch of new microcode. Let’s start with the security vulnerabilities as we always do.

    First, we have Security Bulletin: IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a denial of service due to Apache Commons FileUpload (CVE-2025-48976). The affected products are:

    Affected Product(s)				Version(s)
    IBM WebSphere Application Server		9.0
    IBM WebSphere Application Server		8.5
    IBM WebSphere Application Server Liberty		17.0.0.3 - 25.0.0.8
    

    Second, we have Security Bulletin: IBM WebSphere Application Server Liberty could provide …

    Read more
  • IBM i PTF Guide, Volume 27, Numbers 34, 35, And 36

    September 8, 2025 Doug Bidwell

    We are determined to get back in synch with the publication schedule of The Four Hundred and the IBM i PTF Guide, so this week you get three issues of the latter inside of one issue of the former, a necessity because PTFs never rest even if publications do take a breather every once in a while.

    In Number 34, this was the rundown of PTF Groups by IBM i release level we did on August 23:

    PTF Groups 7.6:

    • HIPERs – High Impact Pervasive
    • Group Security

    PTF Groups 7.5:

    • HIPERs (High Impact/Pervasive)
    • Group Security

    PTF Groups 7.4:

    • HIPERs
    …

    Read more
  • IBM i PTF Guide, Volume 27, Numbers 31 And 32

    August 18, 2025 Doug Bidwell

    We are finally getting back to the normal cadence for the IBM i PTF Guide by doubling up editions to get everything current. Our apologies for the asynchronous delays, which were caused by vacations that we actually took here at IT Jungle for once.

    Number 30 of the Guide was put together on August 2. There were two security vulnerabilities to cope with.

    First, we have Security Bulletin: IBM WebSphere Application Server is affected by arbitrary code execution (CVE-2025-36038), with more information at this link. Affected products include IBM WebSphere Application Server 8.5 and 9.0.

    Second, we have Security …

    Read more
  • IBM i PTF Guide, Volume 27, Number 30

    August 11, 2025 Doug Bidwell

    We are still a little bit out of phase with holidays and vacations and playing some catch up with the IBM i PTF Guide. In Number 30, which was put together on July 26, there were a slew of issues and things, starting with three security vulnerabilities.

    First, we have Security Bulletin: IBM i is affected by errors in OpenSSL as part of IBM Portable Utilities for i due to multiple vulnerabilities, which you can find out more about here. The issues can be fixed by applying PTFs to IBM i.  IBM i 7.6, 7.5, 7.4, 7.3, and …

    Read more
  • IBM i PTF Guide, Volume 27, Number 29

    July 28, 2025 Doug Bidwell

    Welcome to the IBM i PTF Guide. This week, we start out with two security vulnerabilities having to do with the WebSphere application server and an issue with the Java programming runtime.

    Let’s start with the security issues.

    First, we have Security Bulletin: IBM WebSphere Application Server and WebSphere Application Server Liberty are affected by a security bypass vulnerability (CVE-2024-56339), which you can find out more about at this link. The affected products are IBM WebSphere Application Server Liberty 17.0.0.3 through 25.0.0.7 and IBM WebSphere Application Server 9.0.

    Second, we have PH67183: IBM WebSphere Liberty is affected by …

    Read more
  • IBM i PTF Guide, Volume 27, Number 28

    July 21, 2025 Doug Bidwell

    We are still playing a “game of ketchup” after the Independence Day holiday in the United States. This week, we learn that IBM i Java Development Kit 11 64-bit VMs Fail with UnsatisfiedLinkError After IBM i Java Group PTF Apply. You can find out more about this issue at this link. The affected IBM i Java Group PTF levels are as follows:

    • IBM i 7.6: N/A – Java 11 64 bit not available.
    • IBM i 7.5: SF99955 level 15
    • IBM i 7.4: SF99665 level 28
    • IBM i 7.3: Not affected

    As of July 9, IBM i JDK development is …

    Read more
  • IBM i PTF Guide, Volume 27, Number 27

    July 14, 2025 Doug Bidwell

    If you are an ASNA shops, there is an important security update that the company wants you to be aware of. This is an important security notification regarding a vulnerability discovered in two ASNA Windows Services: ASNA Assist and ASNA Registrar. ASNA says that it has resolved this vulnerability with updated versions of all supported ASNA products. You can find out more about this issue at this link.

    Here is the rundown of PTF Groups by IBM i release level since we last published:

    PTF Groups 7.6:

    • None

    PTF Groups 7.5:

    • None

    PTF Groups 7.4:

    • None

    PTF Groups 7.3: …

    Read more
  • IBM i PTF Guide, Volume 27, Number 26

    July 8, 2025 Doug Bidwell

    Brace yourself because the IBM i platform has five security vulnerabilities that you have to analyze and cope with in this week’s issue of the IBM i PTF Guide.

    Let’s just jump right in and get to it.

    First, we have Security Bulletin: IBM WebSphere Application Server is affected by arbitrary code execution (CVE-2025-36038), about which you can find out more at this link. The affected software is IBM WebSphere Application Server 8.5 and 9.0.

    Second, there is Security Bulletin: IBM i is affected by a user gaining elevated privileges due to an unqualified library call vulnerability in …

    Read more
  • IBM i PTF Guide, Volume 27, Number 25

    June 23, 2025 Doug Bidwell

    Happy Monday, everyone. The IBM i stack is starting out your week with a security issue and two security vulnerabilities.

    First, we have PH65394, which is a notification that IBM WebSphere Application Server Liberty is vulnerable to a denial of service due to Apache CXF (CVE-2025-23184 CVSS 7.5). You can find out more about it at this link.

    Second, we have Security Bulletin: IBM i is affected by a user gaining elevated privileges due to an unqualified library call vulnerability in IBM Advanced Job Scheduler for i [CVE-2025-33122]. More information is available here. The PTF number to remediate …

    Read more
  • IBM i PTF Guide, Volume 27, Number 24

    June 16, 2025 Doug Bidwell

    The AS/400, under its many names, turns 37 this coming weekend, and let’s all raise a glass and celebrate this venerable and still relevant platform. Or, perhaps a cup of coffee or tea, depending on your mood.

    In the meantime, before you toast the IBM i, you have two security vulnerabilities to be aware of. First, there is Security Bulletin: This Power System update is being released to address CVE-2024-13176, which you can find out more about here. This affects the BMC’s HTTPS and SSH interfaces. The affected products and versions are as follows:

    • OPENBMC: FW1060.00 – FW1060.30
    • OPENBMC:
    …

    Read more

Previous Articles

Content archive

  • The Four Hundred
  • Four Hundred Stuff
  • Four Hundred Guru

Recent Posts

  • Positive News From The Kyndryl Mainframe Modernization Report
  • NAViGATE, inPower 2025 On Tap for September 2025
  • Guru: WCA4i And Granite – Because You’ve Got Bigger Things To Build
  • As I See It: Digital Coup
  • IBM i PTF Guide, Volume 27, Number 37
  • AI Is Coming for ERP. How Will IBM i Respond?
  • The Power And Storage Price Wiggling Continues – Again
  • LaserVault Adds Multi-Path Support To ViTL
  • As I See It: Spacing Out
  • IBM i PTF Guide, Volume 27, Numbers 34, 35, And 36

Subscribe

To get news from IT Jungle sent to your inbox every week, subscribe to our newsletter.

Pages

  • About Us
  • Contact
  • Contributors
  • Four Hundred Monitor
  • IBM i PTF Guide
  • Media Kit
  • Subscribe

Search

Copyright © 2025 IT Jungle