CVE-2023-38730: IBM Spectrum Copy Data Management information disclosure
IBM Storage Copy Data Management 2.2.0.0 through 2.2.19.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 262268.
Other sources
IBM Storage Copy Data Management uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2023-38730?
CVE-2023-38730 is a vulnerability in IBM Storage Copy Data Management that allows an attacker to decrypt sensitive information due to the use of weaker cryptographic algorithms.
What is the severity of CVE-2023-38730?
The severity of CVE-2023-38730 is high, with a severity value of 7.5.
What software versions are affected by CVE-2023-38730?
IBM Storage Copy Data Management versions 2.2.0.0 to 2.2.19.0 are affected by CVE-2023-38730.
How can an attacker exploit CVE-2023-38730?
An attacker can exploit CVE-2023-38730 by using weaker cryptographic algorithms to decrypt highly sensitive information.
Is there a fix for CVE-2023-38730?
Yes, IBM has provided a fix for CVE-2023-38730. Please refer to the IBM support page for more information.