CVE-2017-1271: Weak Encryption
IBM Security Guardium 9.0, 9.1, and 9.5 supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties. IBM X-Force ID: 124746.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-1271?
CVE-2017-1271 is classified as a moderate severity vulnerability.
How do I fix CVE-2017-1271?
To fix CVE-2017-1271, update to a newer version of IBM Security Guardium that addresses this vulnerability.
What versions of IBM Security Guardium are affected by CVE-2017-1271?
CVE-2017-1271 affects IBM Security Guardium versions 9.0, 9.1, and 9.5.
What type of vulnerability is CVE-2017-1271?
CVE-2017-1271 is a vulnerability related to inadequate selection of security algorithms.
What are the risks associated with CVE-2017-1271?
The risks associated with CVE-2017-1271 include potential exposure to weaker cryptographic protections during communication.