First published: Wed Jul 19 2017(Updated: )
IBM Tivoli Endpoint Manager uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 123903.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM BigFix Platform | =9.2.6 | |
IBM BigFix Platform | =9.2.7 | |
IBM BigFix Platform | =9.5 | |
IBM BigFix Platform | =9.5.5 | |
IBM BigFix Platform | =9.5.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1224 is considered a moderate severity vulnerability due to its potential impact on sensitive information.
To fix CVE-2017-1224, upgrade to the latest version of IBM Tivoli Endpoint Manager that addresses the weak cryptographic algorithms.
CVE-2017-1224 affects specific versions of IBM BigFix Platform including 9.2.6, 9.2.7, and 9.5.x versions.
CVE-2017-1224 may allow attackers to decrypt highly sensitive information due to weaker than expected cryptographic algorithms.
There is no specific workaround mentioned for CVE-2017-1224; upgrading is the recommended approach to mitigate this vulnerability.