CVE-2024-22361: IBM Semeru Runtime information disclosure
IBM Semeru Runtime 8.0.302.0 through 8.0.392.0, 11.0.12.0 through 11.0.21.0, 17.0.1.0 - 17.0.9.0, and 21.0.1.0 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 281222.
Other sources
IBM Semeru Runtime uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22361?
CVE-2024-22361 has a medium severity rating due to its potential to allow an attacker to decrypt sensitive information.
How do I fix CVE-2024-22361?
To fix CVE-2024-22361, upgrade IBM Semeru Runtime to a version above 8.0.392.0, 11.0.21.0, 17.0.9.0, or 21.0.1.0.
Which versions of IBM Semeru Runtime are affected by CVE-2024-22361?
CVE-2024-22361 affects versions 8.0.302.0 through 8.0.392.0, 11.0.12.0 through 11.0.21.0, 17.0.1.0 - 17.0.9.0, and 21.0.1.0.
What type of information is at risk due to CVE-2024-22361?
CVE-2024-22361 puts highly sensitive information at risk due to the use of weaker than expected cryptographic algorithms.
Who reported CVE-2024-22361?
CVE-2024-22361 was reported by IBM's X-Force under ID 281222.