CVE-2026-87980: Security vulnerability affects the UNIX S-TAP component as part of IBM Guardium Data Protection
IBM Guardium Data Protection 12.0, 12.1, and 12.2 could allow a local attacker to obtain sensitive information due to cleartext storage of sensitive information in logs.
Other sources
IBM Guardium Data Protection could allow a local attacker to obtain sensitive information due to cleartext storage of sensitive information in logs.
— IBM
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (AIX)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_AIX_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Amazon)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Amazon_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Debian)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Debian_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Modules)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Modules_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Red Hat)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_RedHat_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Solaris)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Solaris_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (SUSE)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Suse_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (Ubuntu)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_Ubuntu_r124850 - Upgrade
Upgrade
IBM Guardium Data Protection UNIX S-TAP (zLinux)to a version that resolves this vulnerability.Patch Guardium_12.x.p102_S-TAP_zLinux_r124850
Event History
Frequently Asked Questions
Who can exploit this issue?
An attacker needs local access to an affected IBM Guardium Data Protection deployment and low-level privileges. The vulnerability concerns sensitive information stored in cleartext in logs.
Which versions are identified as affected?
IBM Guardium Data Protection versions 12.0, 12.1, and 12.2 are identified as affected.
What is the expected impact if exploited?
A local attacker could obtain sensitive information from logs. The provided vector indicates confidentiality impact only, with no stated integrity or availability impact.