VOOZH about

URL: https://www.ibm.com/support/pages/apar/IJ52222

⇱ IJ52222: INCORRECT BLOCK SIZE REPORTED BY PASSWORD-BASED ENCRYPTION (PBE) ALGORITHMS USING AES IN IBMJCEPLUS


IJ52222: INCORRECT BLOCK SIZE REPORTED BY PASSWORD-BASED ENCRYPTION (PBE) ALGORITHMS USING AES IN IBMJCEPLUS

APAR status

  • Closed as program error.

Error description

  • Error Message: The block size for Password-Based Encryption
    (PBE) algorithms
     specifying AES as the cipher algorithm is
    incorrectly reported
     as 8 instead of 16 by IBMJCEPlus provider.
    .
    Stack Trace: N/A
    .
    

Local fix

  • Determine the correct block size from the PBE algorithm name. If
    the
     PBE algorithm name contains "AES" then the block
    size should be 16.
    

Problem summary

  • The block size reported by IBMJCEPlus for Password-Based
    Encryption
     (PBE) algorithms using the Advanced Encryption
    Standard (AES) is
     incorrect.
    

Problem conclusion

  • The IBMJCEPlus provider has been updated to return the correct
    block
     size for PBE algorithms.
     A fix is made to IBMJCEPlus
     The associated Hursley RTC Problem Report is 151650
     The associated Austin git defect is IBMJCEPLUS issue
    #702
     The associated Austin APAR is IJ52171
     JVMs affected: Java 8
     The fix was delivered for Java 8 SR8 FP35
     The affected jar is "ibmjceplus.jar".
     The build level of this jar for the affected
    releases is 20200828-236
    
    .
    This APAR will be fixed in the following Releases:
    .
    IBM SDK, Java Technology Edition
     8 SR8 FP35 (8.0.8.35)
    .
    Downloads and supplementary documentation can be found at the
    following locations:
    - For non z/OS operating systems:
     - IBM Semeru Runtimes, Version 11 and later
     https://www.ibm.com/semeru-runtimes/downloads/
     - IBM SDK, Java Technology Edition, Version 8
     https://www.ibm.com/support/pages/java-sdk-downloads/
    - For the z/OS operating system:
     - Java SDK Products on z/OS
     https://www.ibm.com/support/pages/java-sdk-products-zos
    

Temporary fix

Comments

APAR Information

  • APAR number

    IJ52222

  • Reported component name

    SECURITY

  • Reported component ID

    620700125

  • Reported release

    270

  • Status

    CLOSED PER

  • PE

    NoPE

  • HIPER

    NoHIPER

  • Special Attention

    NoSpecatt / Xsystem

  • Submitted date

    2024-09-01

  • Closed date

    2024-09-01

  • Last modified date

    2024-09-01

  • APAR is sysrouted FROM one or more of the following:

  • APAR is sysrouted TO one or more of the following:

Fix information

  • Fixed component name

    SECURITY

  • Fixed component ID

    620700125

Applicable component levels

[{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSNVBF","label":"Runtimes for Java Technology"},"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"270","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}}]

Document Information

Modified date:
01 September 2024