First published: Sat Oct 22 2016(Updated: )
IBM Security Guardium 8.2 before p310, 9.x through 9.5 before p700, and 10.x through 10.1 before p100 allows local users to obtain sensitive cleartext information via unspecified vectors, as demonstrated by password information.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | =8.2 | |
IBM InfoSphere Guardium z/OS | =9.0 | |
IBM InfoSphere Guardium z/OS | =9.1 | |
IBM InfoSphere Guardium z/OS | =9.5 | |
IBM InfoSphere Guardium z/OS | =10.0 | |
IBM InfoSphere Guardium z/OS | =10.1 | |
IBM InfoSphere Guardium z/OS | =10.01 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0247 is considered to be of moderate severity due to its potential to expose sensitive information.
To fix CVE-2016-0247, upgrade to the patched versions of IBM Security Guardium: 8.2 p310, 9.x p700, or 10.x p100.
CVE-2016-0247 affects local users of IBM Security Guardium versions 8.2, 9.x before p700, and 10.x before p100.
CVE-2016-0247 may allow local users to access sensitive cleartext information, including passwords.
There are no known workarounds for CVE-2016-0247; the recommended action is to apply the appropriate software updates.