IBM Security Guardium 9.0, 9.1, and 9.5 supports interaction between multiple actors and allows those actors to negotiate which algorithm should be used as a protection mechanism such as encryption or authentication, but it does not select the strongest algorithm that is available to both parties. IBM X-Force ID: 124746.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/124746 | Issue Tracking VDB Entry Vendor Advisory |
http://www.ibm.com/support/docview.wss?uid=swg22010435 | Issue Tracking Vendor Advisory |
http://www.securitytracker.com/id/1039961 | Third Party Advisory VDB Entry |
http://www.securityfocus.com/bid/102034 | Third Party Advisory VDB Entry |
Configurations
Configuration 1 (hide)
|
Information
Published : 2017-12-07 07:29
Updated : 2017-12-19 05:43
NVD link : CVE-2017-1271
Mitre link : CVE-2017-1271
JSON object : View
CWE
CWE-326
Inadequate Encryption Strength
Products Affected
ibm
- security_guardium