CP-IP-140100-0004 - Defects Fixed

The following defects have been fixed in this Cumulative Patch:
cis141
  • CA Identity Portal Cumulative Patch supports CA Identity Manager 14.1 CP9 and later CPs. If you apply CA Identity Manager 14.1 CP9, ensure that
    HF-IdentityManager-0002.zip
    is applied on CA Identity Manager server. For the standalone Identity Portal, the Hot Fix is bundled with
    CP-IP-140100-0004.tar.gz
    .
  • CA Identity Portal Cumulative Patch supports CA Identity Governance 14.1 CP3 and later CPs.
The following defects have been fixed in this Cumulative Patch:
Support Ticket
Engineering Ticket
Problem Summary
Root Cause and Additional Deployment instructions
Associated Risk
1127126
DE372338
Provide a pending certifications dialog box that allows certifier to review and confirm actions.
Enhancement to add certifications dialog box that allows certifier to review and confirm actions.
MEDIUM
1094062
DE367772
The option to download a CSV result set from a Form is not working correctly.
The location to download the CSV file is incorrect.
MEDIUM
1101822
DE367975
Workflow approvals which are generated by Policy Xpress policies do not appear in the requester's timeline of CA Identity Portal, until they are approved or rejected by the approver.
Workflows initiated through Policy Xpress are internal to Identity Manager Server but not exposed to Identity Portal.
MEDIUM
1134904
DE374035
The Forgot Password page verification limit error is not localized properly.
Missing localization key in the JSON files.
MEDIUM
1113536
DE379831
Searching a request by user name in My Requests screen does not work.
Search by requester name (not in Advanced Search) is wrong.
MEDIUM
1161599
DE380384
Setting a group in user creation screen fails with an error:
"Unable to perform search".
Group object relationship search implementation is not proper.
MEDIUM
1157069
DE380550
On submitting a "Delete Group" task from Identity Portal, an error message pops up on the screen:
"Request Error - Cannot execute query for Delete task."
Group object relationship operations are not handled properly.
MEDIUM
167323
DE380995
In Identity Portal User Console, the search field has a button with magnifying glass icon which is missing a meaningful name for the screen reader to identify properly. On clicking the button using JAWS, it just says "button".
The search button is missing a label.
MEDIUM
1167322
DE380999
Expanded state of a drop-down field is not read by Screen Reader.
Accessibility issue due to a missing label.
MEDIUM
1167307
DE381470
The Form tabs are read as buttons by Screen Reader.
The Form tabs label contained button instead of tab.
MEDIUM
1173943
DE382167
Security vulnerability - message property in forms can include scripts that are executed when viewing the request in My Requests and Tasks screens.
After this fix, HTML style is not applied on the message when viewing the request in My Requests and Tasks screen.
MEDIUM
1173971
DE382178
Vulnerability as the HttpOnly flag is not set in the HTTP response header. As a result, cookies can be accessed via the DOM.
Vulnerability issue related to HttpOnly header.
MEDIUM
1176803
DE382733
In the portal approval screen, only the first approval item is automatically selected. Unintentionally, the user might leave the default task as selected even though the user does not wish to approve it.
Requires design change.
MEDIUM
1181948
DE384570
The reserved work items are accessible by both delegator and delegatee, which might create a conflict while accepting/rejecting a work item.
Retrieval of work items does not consider the reserved flag.
MEDIUM
1183348
DE385231
Screen reader cannot read the domain portion of an email form property.
Accessibility issue due to a missing label.
MEDIUM
1201319
DE388215
Performance issue when working with User Login, Form Submission, and Access Module.
Increase memory capacity for better performance.
MEDIUM
1216713
DE389535
Duplicate tasks and workflow in CA Identity Manager are initiated by CA Identity Portal.
When the number of different tasks in a request exceeded the batch size, the number of tasks needed to be invoked was not calculated correctly.
MEDIUM
1241757
DE397419
The approvers of a request are not displayed in My Requests Timeline when resolvers are generated by custom workflow.
Work items without Participant ID are filtered out.
MEDIUM
1201319
DE398957
Performance issue when working with user login, submission of a form, and Access Module in Internet Explorer 11.
The UI code caused the issue.
MEDIUM
DE399634
The Search and Advanced Search in Tasks screen do not work properly.
The UI code for search task handled few cases incorrectly.
MEDIUM
1166749
DE402521
When working with Advanced Search in Internet Explorer 11, the "Requested by" and "Requested for" fields drop-downs are not scrollable.
User selector is not used for auto complete results.
MEDIUM
1288978
DE404802
When accessing the user account information from Identity Portal (Home -> My Profile -> My Accounts -> Actions), a user selects the Actions drop down and it remains in loading state forever.
The UI code caused the issue.
MEDIUM
1214542
DE389109
Unable to search an Active Directory group that contains parenthesis "(" in its name.
Improper handling of the parenthesis "(" character.
MEDIUM
1112567
DE369562
Advanced search filter by date on 'My Requests' does not display correct results while using localization.
Search format was hard coded to US date format.
LOW
1173968
DE382170
Security vulnerability - executing script from search result query.
No HTML escaping for "<script>" tags in search results.
LOW
1218187
DE389769
In Modules, the dynamic order of actions for a task and a form created confusion.
Deliver a fix to support static ordering of actions.
LOW
1249406
DE395590
Form tabs cannot be localized.
Introduced the capability to localize Form tabs which was not possible earlier.
LOW
1243055
DE396165
Misleading error when password reset takes longer than expected to complete:
Request Failed Failed to reset user password return code is PENDING
Return messages are not handled properly.
LOW
1104750
DE370267
'Clear' button on invocation operation functions as a return button.
Changed UI display to 'Back' and added localization which is under 'Static' → 'Dynamic Modules' → 'RETURN_TO_USER_SELECTION'
LOW
1127367
DE372371
In the Forgot Password page, CA Logo displays momentarily before the custom logo loads.
Implementation bug.
LOW
1096959
DE367091
When working with My Request screen in Internet Explorer 11, the drop-down list of users is not scrollable.
The system could not handle too many results in the drop-down list.
LOW