CVE-2026-8179: Multiple vulnerabilities in Aspera applications.
IBM Aspera High-Speed Transfer Endpoint 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Server 3.7.4 through 4.4.7 Fix Pack 1 and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could allow an authenticated user to execute arbitrary code on the system.
Other sources
IBM Aspera High-Speed Transfer Server and IBM Aspera High-Speed Transfer Endpoint are affected by a buffer overflow in the asperahttpd component. This vulnerability could allow an authenticated user to execute arbitrary code on the system.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2026-8179?
The severity of CVE-2026-8179 is high with a CVSS score of 8.8.
How do I fix CVE-2026-8179?
To fix CVE-2026-8179, upgrade to IBM Aspera High-Speed Transfer Server and Endpoint version 4.4.7 Fix Pack 2.
What applications are affected by CVE-2026-8179?
CVE-2026-8179 affects IBM Aspera High-Speed Transfer Endpoint and Server versions 3.7.4 through 4.4.7 Fix Pack 1.
What type of vulnerability is CVE-2026-8179?
CVE-2026-8179 is classified as a buffer overflow vulnerability.
Is authentication required to exploit CVE-2026-8179?
Yes, CVE-2026-8179 can be exploited by an authenticated user.