CVE-2024-22338: IBM Security Verify Access OIDC Provider information disclosure
IBM Security Verify Access OIDC Provider 22.09 through 23.03 could disclose sensitive information to a local user due to hazardous input validation. IBM X-Force ID: 279978.
Other sources
IBM Security Verify Access OIDC Provider could disclose sensitive information to a local user due to hazardous input validation.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22338?
CVE-2024-22338 has been classified as a high-severity vulnerability due to its potential to disclose sensitive information.
How do I fix CVE-2024-22338?
To fix CVE-2024-22338, upgrade IBM Security Verify Access OIDC Provider to a version beyond 23.03.
What types of systems are affected by CVE-2024-22338?
CVE-2024-22338 affects IBM Security Verify Access OIDC Provider versions 22.09 through 23.03.
What is the risk associated with CVE-2024-22338?
The risk associated with CVE-2024-22338 is that local users could gain unauthorized access to sensitive information.
When was CVE-2024-22338 reported?
CVE-2024-22338 was reported as a vulnerability in IBM Security Verify Access OIDC Provider in 2024.