First published: Fri Jul 08 2022(Updated: )
IBM Engineering Lifecycle Optimization - Publishing 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 does not sufficiently monitor or control transmitted network traffic volume, so that an actor can cause the software to transmit more traffic than should be allowed for that actor. IBM X-Force ID: 213722.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM RPE | =6.0.6 | |
IBM RPE | =6.0.6.1 | |
IBM RPE | =7.0 | |
IBM RPE | =7.0.1 | |
IBM RPE | =7.0.2 | |
Linux Linux kernel | ||
Microsoft Windows | ||
<=7.0.1 | ||
<=7.0.2 | ||
<=6.0.6 | ||
<=6.0.6.1 | ||
<=7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-39016.
IBM Engineering Lifecycle Optimization - Publishing versions 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 are affected.
The severity of CVE-2021-39016 is medium with a score of 4.3.
The IBM X-Force ID associated with this vulnerability is 213722.
To fix this vulnerability, update IBM Engineering Lifecycle Optimization - Publishing to a version that is not affected, such as 7.0.2.