CVE-2021-38985

IBM Tivoli Key Lifecycle Manager 3.0, 3.0.1, 4.0, and 4.1 receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_key_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_key_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_key_lifecycle_manager:*:*:*:*:*:*:*:*

History

21 Nov 2024, 06:18

Type Values Removed Values Added
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/212799 - VDB Entry, Vendor Advisory () https://exchange.xforce.ibmcloud.com/vulnerabilities/212799 - VDB Entry, Vendor Advisory
References () https://www.ibm.com/support/pages/node/6515526 - Patch, Vendor Advisory () https://www.ibm.com/support/pages/node/6515526 - Patch, Vendor Advisory

16 Nov 2021, 16:18

Type Values Removed Values Added
References (CONFIRM) https://www.ibm.com/support/pages/node/6515526 - (CONFIRM) https://www.ibm.com/support/pages/node/6515526 - Patch, Vendor Advisory
References (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/212799 - (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/212799 - VDB Entry, Vendor Advisory
CPE cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:4.1.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_guardium_key_lifecycle_manager:*:*:*:*:*:*:*:*
cpe:2.3:a:ibm:security_key_lifecycle_manager:*:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : 4.0
v3 : 4.3
CWE CWE-20

12 Nov 2021, 16:28

Type Values Removed Values Added
New CVE

Information

Published : 2021-11-12 16:15

Updated : 2024-11-21 06:18


NVD link : CVE-2021-38985

Mitre link : CVE-2021-38985

CVE.ORG link : CVE-2021-38985


JSON object : View

Products Affected

ibm

  • security_guardium_key_lifecycle_manager
  • security_key_lifecycle_manager
CWE
CWE-20

Improper Input Validation