CVE-2025-13375: IBM Common Cryptographic Architecture Arbitrary Command Execution
IBM Common Cryptographic Architecture (CCA) 7.5.52 and 8.4.82 could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system.
Other sources
IBM Common Cryptographic Architecture (CCA) could allow an unauthenticated user to execute arbitrary commands with elevated privileges on the system.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-13375?
CVE-2025-13375 has a high severity level due to its potential for arbitrary command execution by unauthenticated users.
How do I fix CVE-2025-13375?
To mitigate CVE-2025-13375, upgrade the IBM Common Cryptographic Architecture to versions later than 8.4.82 or 7.5.52.
Who is affected by CVE-2025-13375?
CVE-2025-13375 affects users of IBM Common Cryptographic Architecture versions 7.5.52 and 8.4.82, including specific IBM products like CCA 7 MTM for 4769 and CCA 8 MTM for 4770.
What can attackers do with CVE-2025-13375?
Attackers can exploit CVE-2025-13375 to execute arbitrary commands with elevated privileges on vulnerable systems.
Is there a workaround for CVE-2025-13375 if I cannot immediately upgrade?
Currently, there are no documented workarounds for CVE-2025-13375; upgrading the software is the recommended action.