Description
IBM DataPower Gateway 10.5.0.0 through 10.5.0.22, 10.6.1 through 10.6.6, 10.6.0.0 through 10.6.0.10, and 11.0.0.0 through 11.0.0.2 could allow a remote attacker to execute arbitrary code due to a heap-based buffer overflow.
Published: 2026-10-08
Score: 8.1 High
EPSS: n/a
KEV: No
Impact: Remote Code Execution
Action: Immediate Patch
AI Analysis

Impact

IBM DataPower Gateway versions 10.5.0.0–10.5.0.22, 10.6.1–10.6.6, 10.6.0.0–10.6.0.10, and 11.0.0.0–11.0.0.2 contain a heap‑based buffer overflow that a remote attacker can exploit to execute arbitrary code. The flaw is identified as CWE‑122 and the CVSS score is 8.1, indicating high severity.

Affected Systems

Affected products are IBM DataPower Gateway 10.5.0, 10.6.0, 10.6CD, and 11.0.0. The versions listed above are vulnerable. Fixed releases include 10.5.0.23 or later, 10.6.0.11 or later, 10.6CD 10.6.1.0.0.3 or later, and 11.0.0.21 or later.

Risk and Exploitability

The CVSS score of 8.1 denotes a high‑impact attack that can compromise confidentiality, integrity, and availability. EPSS is not available, so the current public exploit probability is unclear; however, remote code execution is a high‑risk outcome. The vulnerability is not listed in CISA KEV, suggesting no known active exploitation in the wild. To exploit, an attacker only needs network access to the gateway and can send crafted input that triggers the overflow, gaining arbitrary code execution.

Generated by OpenCVE AI on October 8, 2026 at 16:19 UTC.

Remediation

Vendor Solution

IBM strongly advises upgrading as soon as possible. Known Issue: DT499224 https://www.ibm.com/mysupport/s/defect/aCIgJ000000IiH7/dt499224 Affected VersionsFixed in ReleaseIBM DataPower Gateway 10.6CD 10.6.1 - 10.6.611.0.0.3IBM DataPower Gateway 10.6.0 10.6.0.0 - 10.6.0.1010.6.0.11IBM DataPower Gateway 11.0.0 11.0.0.0 - 11.0.0.211.0.0.3IBM DataPower Gateway 10.5.0 10.5.0.0 - 10.5.0.2210.5.0.23


OpenCVE Recommended Actions

  • Upgrade the device firmware to a fixed release (10.5.0.23 or newer, 10.6.0.11 or newer, 10.6CD 10.6.1.0.0.3 or newer, or 11.0.0.21 or newer).
  • If an upgrade is not immediately possible, restrict access to the DataPower Gateway to trusted internal networks or implement firewall rules that block all external connections except for required management traffic.
  • Enable comprehensive logging and monitor for abnormal input patterns or repeated high‑volume requests that could indicate an attempt to trigger a buffer overflow.

Generated by OpenCVE AI on October 8, 2026 at 16:19 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 14:15:00 +0000

Type Values Removed Values Added
Description IBM DataPower Gateway 10.5.0.0 through 10.5.0.22, 10.6.1 through 10.6.6, 10.6.0.0 through 10.6.0.10, and 11.0.0.0 through 11.0.0.2 could allow a remote attacker to execute arbitrary code due to a heap-based buffer overflow.
Title IBM DataPower Gateway Buffer Overflow
First Time appeared Ibm
Ibm datapower Gateway 1050
Ibm datapower Gateway 1060
Ibm datapower Gateway 106cd
Ibm datapower Gateway 1100
Weaknesses CWE-122
CPEs cpe:2.3:a:ibm:datapower_gateway_1050:10.5.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_1050:10.5.0.22:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_1060:10.6.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_1060:10.6.0.10:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_106cd:10.6.1:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_106cd:10.6.6:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_1100:11.0.0.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:datapower_gateway_1100:11.0.0.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm datapower Gateway 1050
Ibm datapower Gateway 1060
Ibm datapower Gateway 106cd
Ibm datapower Gateway 1100
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Datapower Gateway 1050 Datapower Gateway 1060 Datapower Gateway 106cd Datapower Gateway 1100
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-10-08T14:02:38.144Z

Reserved: 2026-07-06T17:30:20.779Z

Link: CVE-2026-14888

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-10-08T15:17:49.700

Modified: 2026-10-08T15:17:49.700

Link: CVE-2026-14888

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T16:30:05Z

Weaknesses
  • CWE-122

    Heap-based Buffer Overflow