NetIQ eDirectory 9.1.1 Hot Fix 1 Release Notes

August 2018

NetIQ eDirectory 9.1.1 HF 1 resolves few potential security vulnerabilities. These improvements were made in direct response to suggestions from our customers. We thank you for your time and valuable input. We hope you continue to help us ensure our products meet all your needs. You can post feedback in the eDirectory Community Support Forums, our community Web site that also includes product notifications, blogs, and product user groups.

For a full list of all issues resolved in NetIQ eDirectory 9.x, including all patches and service packs, refer to TID 7016794, “History of Issues Resolved in NetIQ eDirectory 9.x”.

For more information about this release and for the latest release notes, see the Documentation Web site. To download this product, see the Product Upgrade Web site.

1.0 What’s New?

eDirectory 9.1.1 HF 1 provides the following fixes in this release:

1.1 Fixed Issues

eDirectory 9.1.1 HF 1 includes software fixes that resolve the following security vulnerabilities:

Resolved Security Vulnerabilities

This release resolves the following security vulnerabilities:

  • CVE-2018-7686 (Information Leakage Vulnerability) - Special thanks to Steven Seeley (mr_me) of Source Incite working with Trend Micro's Zero Day Initiative for responsibly disclosing this vulnerability to us.

  • CVE-2018-7692

2.0 System Requirements

For information about prerequisites, hardware requirements, and supported operating systems, see the NetIQ eDirectory Installation Guide.

3.0 Installing or Upgrading

To upgrade to eDirectory 9.1.1 HF 1, you need to be on eDirectory 8.8.8.x or above. For more information on upgrading eDirectory, see the NetIQ eDirectory Installation Guide.

4.0 Additional Documentation

4.1 iManager

For iManager information, refer to the iManager online documentation.

4.2 Novell International Cryptographic Infrastructure (NICI)

The NICI Administration Guide is included in the eDirectory documentation page.

4.3 eDirectory Issues on Open Enterprise Server (UNIX only)

For more information on eDirectory issues on Open Enterprise Server (OES), see OES Readme.

5.0 Legal Notices

For information about legal notices, trademarks, disclaimers, warranties, export and other use restrictions, U.S. Government rights, patent policy, and FIPS compliance, see https://www.netiq.com/company/legal/.

Copyright © 2018 NetIQ Corporation, a Micro Focus company. All Rights Reserved.