CVE-2017-9272: Input Validation
Published Oct 6, 2017
·Updated
The Bi-directional driver in IDM 4.5 before 4.0.3.0 could be susceptible to a denial of service attack.
Affected Software
2 affected components
Microfocus Bi-directional Driver<=4.0.2.0
Microfocus Identity Manager=4.5
Remediation
Patch Available
Event History
Oct 6, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-9272?
CVE-2017-9272 is classified as a denial of service vulnerability which can impact the functionality of affected software.
2
How do I fix CVE-2017-9272?
To mitigate CVE-2017-9272, update the Bi-directional driver to version 4.0.3.0 or later.
3
Which versions of the Bi-directional driver are affected by CVE-2017-9272?
CVE-2017-9272 affects the Bi-directional driver versions up to and including 4.0.2.0.
4
Does CVE-2017-9272 affect Microfocus Identity Manager?
No, CVE-2017-9272 specifically affects the Bi-directional driver and not the core Identity Manager product.
5
Is there a patch available for CVE-2017-9272?
Yes, a patch is available and can be obtained by upgrading to version 4.0.3.0 or later of the Bi-directional driver.