Lucene search

K
ibmIBMB5DB9B90BC00C1428E278F0E0F6D5E1823940BFA51EEB183E79F9AB49488D7CB
HistoryAug 30, 2024 - 5:04 p.m.

Security Bulletin: IBM Data Product Hub is vulnerable with IBM Semeru Runtime Quarterly CPU - Apr 2024 (CVE-2024-21012)

2024-08-3017:04:14
www.ibm.com
3
ibm data product hub
ibm semeru runtime
vulnerability
cve-2024-21012
networking component

CVSS3

3.7

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.9

Confidence

High

Summary

IBM Data Product Hub has a dependency on IBM Semeru Runtime which is vulnerable (CVE-2024-21012). This bulletin contains information regarding the vulnerability and its fixture.

Vulnerability Details

CVEID:CVE-2024-21012
**DESCRIPTION:**An unspecified vulnerability in Java SE related to the Networking component could allow a remote attacker to cause high integrity impact.
CVSS Base score: 3.7
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/288019 for the current score.
CVSS Vector: (CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N)

Affected Products and Versions

Affected Product(s)|**Version(s)
**
—|—
IBM Data Product Hub| 5.0.0

Remediation/Fixes

IBM strongly recommends addressing the vulnerability now.

Affected Product(s)|**Fixed in Version(s)
**
—|—
IBM Data Product Hub| 5.0.1 or latest

Workarounds and Mitigations

None

Affected configurations

Vulners
Node
ibminfosphere_master_data_management_reference_data_management_hubMatch5.0.0
VendorProductVersionCPE
ibminfosphere_master_data_management_reference_data_management_hub5.0.0cpe:2.3:a:ibm:infosphere_master_data_management_reference_data_management_hub:5.0.0:*:*:*:*:*:*:*

CVSS3

3.7

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:N

AI Score

5.9

Confidence

High