CVE-2021-20369

CWE-3267 documents4 sources
Severity
5.9MEDIUM
EPSS
0.1%
top 67.77%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 13
Latest updateOct 27

Description

IBM Cloud Pak for Applications 4.3 uses weaker than expected cryptographic algorithms that could allow an attacker to decrypt highly sensitive information. IBM X-Force ID: 195361.

CVSS vector

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:NExploitability: 2.2 | Impact: 3.6

Affected Packages2 packages

🔴Vulnerability Details

6
OSV
linux-azure-fde vulnerabilities2022-10-27
OSV
linux-aws-5.4 vulnerabilities2022-10-14
OSV
linux-gcp, linux-oracle-5.4, linux-raspi, linux-raspi-5.4 vulnerabilities2022-10-13
OSV
linux, linux-aws, linux-bluefield, linux-gke, linux-gkeop, linux-hwe-5.4, linux-ibm, linux-ibm-5.4, linux-kvm, linux-oracle vulnerabilities2022-10-10
GHSA
GHSA-q745-xh9x-889x: IBM Cloud Pak for Applications 42022-05-24