First published: Mon Dec 18 2017(Updated: )
IBM Security Guardium 10.0 discloses sensitive information to unauthorized users. The information can be used to mount further attacks on the system. IBM X-Force ID: 124684.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM InfoSphere Guardium z/OS | =10.0 | |
IBM InfoSphere Guardium z/OS | =10.0.1 | |
IBM InfoSphere Guardium z/OS | =10.1.0 | |
IBM InfoSphere Guardium z/OS | =10.1.2 | |
IBM InfoSphere Guardium z/OS | =10.1.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-1257 has a moderate severity level as it allows unauthorized users to access sensitive information.
To resolve CVE-2017-1257, upgrade to the latest version of IBM Security Guardium that includes the security patch.
CVE-2017-1257 affects IBM Security Guardium versions 10.0, 10.0.1, and 10.1.x up to 10.1.3.
CVE-2017-1257 potentially exposes sensitive information that could be exploited for further attacks.
As of now, a specific workaround for CVE-2017-1257 is not provided, so applying updates is the recommended action.