CVE-2026-13473: IBM Storage Protect Client is vulnerable to Heap-Based Buffer Overflow
IBM Storage Protect Client 8.1.0.0 through 8.1.27.0, 8.1.27.1, and 8.2.0.0 through 8.2.1.0 IBM Storage Protect is vulnerable to a heap-based buffer overflow, caused by improper bounds checking. A remote attacker could overflow a buffer and execute arbitrary code on the system or cause the server to crash.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Storage Protect Clientto a version that resolves this vulnerability.Fixed in 8.2.1.2
Event History
Frequently Asked Questions
What is the severity of CVE-2026-13473?
The severity of CVE-2026-13473 is rated as high with a CVSS score of 8.1.
How do I fix CVE-2026-13473?
To fix CVE-2026-13473, upgrade IBM Storage Protect Client to a version that is not affected, specifically version 8.1.28.0 or later.
What type of vulnerability is associated with CVE-2026-13473?
CVE-2026-13473 is associated with a heap-based buffer overflow vulnerability.
Can CVE-2026-13473 be exploited remotely?
Yes, CVE-2026-13473 can be exploited remotely due to improper bounds checking.
What could be the impact of exploiting CVE-2026-13473?
Exploiting CVE-2026-13473 could allow a remote attacker to execute arbitrary code or crash the server.