First published: Thu Dec 15 2022(Updated: )
IBM Spectrum Control 5.4 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 233982.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Control | <=5.4 | |
IBM Spectrum Control | =5.4.0.0 | |
IBM AIX | ||
Linux Kernel | ||
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-38391 has a high severity rating due to its potential to allow decryption of sensitive information.
To fix CVE-2022-38391, upgrade IBM Spectrum Control to a version that uses stronger cryptographic algorithms.
CVE-2022-38391 is classified as a cryptographic vulnerability related to the use of weak algorithms.
IBM Spectrum Control version 5.4 and earlier versions are affected by CVE-2022-38391.
An attacker exploiting CVE-2022-38391 could decrypt sensitive data, compromising the confidentiality of the information.