CVE-2022-34320: IBM CICS TX information disclosure
IBM CICS TX 11.1 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 229464.
Other sources
IBM CICS TX uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
— IBM
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is CVE-2022-34320?
CVE-2022-34320 is a vulnerability in IBM CICS TX 11.1 that uses weaker than expected cryptographic algorithms, allowing an attacker to decrypt highly sensitive information.
What is the severity of CVE-2022-34320?
The severity of CVE-2022-34320 is high with a CVSS score of 7.5.
How can an attacker exploit CVE-2022-34320?
An attacker can exploit CVE-2022-34320 by leveraging the weaker cryptographic algorithms used in IBM CICS TX 11.1 to decrypt highly sensitive information.
How can I fix CVE-2022-34320?
To fix CVE-2022-34320, update to IBM CICS TX 11.1.0.0 iFix5 or higher using the patch provided by IBM.
Where can I find more information about CVE-2022-34320?
You can find more information about CVE-2022-34320 on the IBM X-Force Exchange website and the IBM Support pages.