CVE-2021-20479: High severity ibm cloud pak system vulnerability
IBM Cloud Pak System 2.3.0 through 2.3.3.3 Interim Fix 1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 197498.
Other sources
IBM Cloud Pak System uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2021-20479.
What is the severity of CVE-2021-20479?
The severity of CVE-2021-20479 is high (7.5).
What is the affected software for CVE-2021-20479?
The affected software for CVE-2021-20479 is IBM Cloud Pak System versions 2.3.0 through 2.3.3.3 Interim Fix 1.
What is the impact of CVE-2021-20479?
The impact of CVE-2021-20479 is that an attacker could decrypt highly sensitive information.
Is there a fix available for CVE-2021-20479?
Yes, IBM has released a fix for CVE-2021-20479. Please refer to the IBM support page for more information.