Impact
IBM Verify Identity Access and related products are affected by a buffer overflow vulnerability. The description indicates that the software is vulnerable to a buffer overflow attack. No specific impact or exploitation scenario is detailed beyond the vulnerability type.
Affected Systems
Affected products include IBM Security Verify Access (v10.0.9.2 interim fix), IBM Verify Identity Access (v11.0.3 interim fix), and the corresponding container releases for both architecture sets. Users should verify their deployed versions against the versions listed in the IBM fix central links and update accordingly.
Risk and Exploitability
The CVSS score of 9.8 indicates a high severity vulnerability. The EPSS score is <1% and the vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attack vector requires the ability to send crafted input to the affected service, potentially over the network, but no specific exploit is published in this CVE payload.
OpenCVE Enrichment