First published: Tue Jan 05 2021(Updated: )
IBM Guardium Data Encryption (GDE) specifies permissions for a security-critical resource in a way that allows that resource to be read or modified by unintended actors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM GDE | <=3.0.0.2 | |
Ibm Security Guardium Data Encrpytion | =3.0.0.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2019-4702.
The severity of CVE-2019-4702 is high, with a severity value of 8.1.
IBM Guardium Data Encryption (GDE) version 3.0.0.2 is affected by CVE-2019-4702.
CVE-2019-4702 allows unintended actors to read or modify a security-critical resource, posing a significant risk to the affected system.
To fix CVE-2019-4702, it is recommended to update IBM Guardium Data Encryption (GDE) to a version that is not affected by this vulnerability.