IBM Engineering Lifecycle Optimization - Publishing 6.0.6, 6.0.6.1, 7.0, 7.0.1, and 7.0.2 does not sufficiently monitor or control transmitted network traffic volume, so that an actor can cause the software to transmit more traffic than should be allowed for that actor. IBM X-Force ID: 213722.
References
Link | Resource |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/213722 | VDB Entry Vendor Advisory |
https://www.ibm.com/support/pages/node/6603335 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
18 Jul 2022, 21:45
Type | Values Removed | Values Added |
---|---|---|
References | (XF) https://exchange.xforce.ibmcloud.com/vulnerabilities/213722 - VDB Entry, Vendor Advisory | |
References | (CONFIRM) https://www.ibm.com/support/pages/node/6603335 - Patch, Vendor Advisory | |
First Time |
Linux
Ibm engineering Lifecycle Optimization Publishing Ibm Microsoft Microsoft windows Linux linux Kernel |
|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 4.3 |
CWE | NVD-CWE-noinfo | |
CPE | cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:6.0.6.1:*:*:*:*:*:*:* cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:7.0.2:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:6.0.6:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:7.0.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:engineering_lifecycle_optimization_publishing:7.0:*:*:*:*:*:*:* |
14 Jul 2022, 17:32
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-07-14 17:15
Updated : 2023-12-10 14:35
NVD link : CVE-2021-39016
Mitre link : CVE-2021-39016
CVE.ORG link : CVE-2021-39016
JSON object : View
Products Affected
linux
- linux_kernel
ibm
- engineering_lifecycle_optimization_publishing
microsoft
- windows
CWE