First published: Tue Aug 11 2020(Updated: )
IBM Guardium Data Encryption (GDE) is deployed with active debugging code that can create unintended entry points.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Guardium Data Encryption | =3.0.0.2 | |
Ibm Guardium For Cloud Key Management | <1.7.0 | |
<=3.0.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2019-4701 is medium with a CVSS score of 5.3.
IBM Guardium Data Encryption (GDE) is a software solution provided by IBM for data protection and encryption.
IBM Guardium Data Encryption (GDE) version 3.0.0.2 is affected by CVE-2019-4701.
CVE-2019-4701 can be exploited by attackers leveraging the active debugging code in IBM Guardium Data Encryption (GDE) to create unintended entry points.
Yes, IBM has provided a fix for CVE-2019-4701. Please refer to the IBM support page for detailed instructions.