CVE-2026-3686: Vulnerabilities exists in IBM Cloud Pak for Data System
IBM Cloud Pak for Data System 11.3.0.2 through Interim Fix 001 is vulnerable to a denial of service due to improper limitation of resources.
Other sources
IBM Cloud Pak for Data System is vulnerable to a denial of service due to improper limitation of resources.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Cloud Pak for Data Systemto a version that resolves this vulnerability.Fixed in 11.3.0.2 through Interim Fix 001 - Upgrade
Upgrade
IBM Cloud Pak for Data Systemto a version that resolves this vulnerability.Patch 11.3.1.2-IF1-WS-ICPDS-NPS-Clients-fp326919
Event History
Frequently Asked Questions
Which deployments are affected?
IBM Cloud Pak for Data System version 11.3.0.2 through Interim Fix 001 is identified as affected.
What access does an attacker need to exploit this issue?
The supplied CVSS vector indicates local access is required, while no privileges or user interaction are required.
What is the likely impact of successful exploitation?
Successful exploitation can cause a denial of service through improper resource limitation. The supplied vector indicates availability impact only, with no stated confidentiality or integrity impact.