Your review has been sent successfully

IBM Alert

2912
Classification
These posts contain security alerts, including digital loopholes, electronic attacks, technical updates, and they are classified base on the level of severity.

Critical

High

Medium

Low

Warning Date

Severity Level

Warning Number

Target Sector

10 March, 2022

● High

2022-4503

All

Description:

IBM has released security updates to address several vulnerabilities in the following products:

  • OmniFind Text Search Server for DB2 for i
    • V1R5M0
    • V1R4M0
    • V1R3M0
  • IBM DataPower Gateway
    • 10.0.2.0
    • 10.0.3.0
    • 10.0.1.0-10.0.1.5
    • 2018.4.1.0-2108.4.1.18
  • AIX
    • 7.1
    • 7.2
    • 7.3
  • VIOS
    • 3.1
  • IBM Cloud Pak System
    • V2.3
    • V2.3.1.1
    • V2.3.2.0
    • v2.3.3.1
    • V2.3.3.2
    • V2.3.3.3
    • V2.3.3.3 ifix1
  • IBM Guardium Data Encryption (GDE)- CipherTrust Tokenization Server (CT-VL)
    • 2.6.3 and lower
  • IBM Guardium Data Encryption (GDE) - Guardium Cloud Key Manager (GCKM)
    • GCKM 1.10.1 and lower
  • IBM Cloud Application Business Insights
    • 1.1.7
    • 1.1.6
    • 1.1.5
Threats:

An attacker could exploit these vulnerabilities by doing the following:

  • Denial of Service (DoS) attack
  • Bypass security restrictions
  • Gain elevated privileges
  • Information disclosure
  • Code execution
Best practice and Recommendations:
Last updated at 10 March, 2022

Rate the content

rate-icon
up icon