CVE-2019-4701: Medium severity ibm security guardium data encryption vulnerability
IBM Guardium Data Encryption (GDE) is deployed with active debugging code that can create unintended entry points.
Other sources
IBM Security Guardium Data Encryption (GDE) 3.0.0.2 is deployed with active debugging code that can create unintended entry points. IBM X-Force ID: 171936.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2019-4701?
The severity of CVE-2019-4701 is medium with a CVSS score of 5.3.
What is IBM Guardium Data Encryption (GDE)?
IBM Guardium Data Encryption (GDE) is a software solution provided by IBM for data protection and encryption.
Which versions of IBM Guardium Data Encryption (GDE) are affected by CVE-2019-4701?
IBM Guardium Data Encryption (GDE) version 3.0.0.2 is affected by CVE-2019-4701.
How can CVE-2019-4701 be exploited?
CVE-2019-4701 can be exploited by attackers leveraging the active debugging code in IBM Guardium Data Encryption (GDE) to create unintended entry points.
Is there a fix available for CVE-2019-4701?
Yes, IBM has provided a fix for CVE-2019-4701. Please refer to the IBM support page for detailed instructions.