Lucene search

K
ibmIBM495FDB911AC82E9C2789BC230DA3363EDD3AF8344FD88833AC53A4000FCAC1F6
HistoryJan 13, 2021 - 4:26 p.m.

Security Bulletin: A vulnerability was identified and remediated in the IBM MaaS360 Cloud Extender (CVE-2020-9327)

2021-01-1316:26:32
www.ibm.com
13

0.01 Low

EPSS

Percentile

84.0%

Summary

A vulnerability was identified and remediated in the IBM MaaS360 Cloud Extender

Vulnerability Details

CVEID:CVE-2020-9327
**DESCRIPTION:**SQLite is vulnerable to a denial of service, caused by a NULL pointer dereference in isAuxiliaryVtabOperator. By generating column optimization, a remote attacker could exploit this vulnerability to cause a segmentation fault.
CVSS Base score: 5.3
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/176691 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L)

Affected Products and Versions

Affected Product(s) Version(s)
IBM MaaS360 Cloud Extender 2.101.x and prior

Remediation/Fixes

Update the IBM MaaS360 Cloud Extender to version 2.102.000.060 or greater.

Workarounds and Mitigations

None

CPENameOperatorVersion
ibm maas360eq2.101