First published: Fri Sep 17 2021(Updated: )
IBM Cloud Pak for Data 2.5 could allow a local user with special privileges to obtain highly sensitive information. IBM X-Force ID: 209575.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cloud Pak for Data | =2.5 | |
<=2.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-38899 is medium with a CVSS score of 4.4.
CVE-2021-38899 allows a local user with special privileges to obtain highly sensitive information in IBM Cloud Pak for Data 2.5.
The affected software for CVE-2021-38899 is IBM Cloud Pak for Data 2.5 and IBM CP4D 2.5.
Yes, IBM has provided a fix for CVE-2021-38899. Please refer to the IBM support page for more information.
You can find more information about CVE-2021-38899 on the IBM X-Force Exchange website or the IBM support page.