Description
IBM Guardium Data Protection 12.0, 12.1, 12.2 is vulnerable to a heap-based out-of-bounds read in the TDS7 LOGIN7 protocol parser. A remote attacker could send a specially crafted TDS LOGIN7 packet containing invalid offset or length values, potentially causing information disclosure or denial of service.
Published: 2026-10-08
Score: 8.1 High
EPSS: n/a
KEV: No
Impact: Information Disclosure
Action: Immediate Patch
AI Analysis

Impact

A heap‑based out‑of‑bounds read vulnerability exists in the TDS7 LOGIN7 protocol parser of IBM Guardium Data Protection. The flaw allows a remote attacker to send a specially crafted LOGIN7 packet with invalid offset or length values, causing the application to read beyond intended bounds. This can expose sensitive data from memory or cause a denial‑of‑service by crashing the Guardium process, potentially disrupting secure data monitoring.

Affected Systems

The vulnerability affects IBM Guardium Data Protection versions 12.0, 12.1, and 12.2 running on Windows. It is present in the Windows S‑TAP component and can be mitigated by applying the latest Guardium_12.x.p101_r120203346_S‑TAP_Windows patch, which is available from IBM Fix Central.

Risk and Exploitability

The CVSS score of 8.1 indicates a high severity and the lack of an EPSS score means that exploitation probability is currently unknown, but the vulnerability is not listed in the CISA KEV catalog. Because the flaw is exercised by a remote packet over the TDS protocol, an attacker only needs network access to the Guardium server; no local privilege is required. Successful exploitation could lead to data leakage or service interruption, making immediate remediation critical.

Generated by OpenCVE AI on October 8, 2026 at 20:52 UTC.

Remediation

Vendor Solution

For all affected versions, IBM strongly recommends addressing these vulnerabilities now by applying the latest IBM Guardium Data Protection Windows S-TAP patch:  https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=All&platform=All&function=fixId&fixids=Guardium_12.x.p101_r120203346_S-TAP_Windows&includeSupersedes=0&source=fc


OpenCVE Recommended Actions

  • Apply the IBM Guardium Data Protection Windows S‑TAP patch (Guardium_12.x.p101_r120203346_S‑TAP_Windows) from IBM Fix Central.
  • Restrict inbound TDS traffic to authorized hosts and monitor Guardium logs for abnormal LOGIN7 packets post‑patch.
  • Deploy firewall or IDS/IPS rules to block or alert on suspicious TDS packets.

Generated by OpenCVE AI on October 8, 2026 at 20:52 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 08 Oct 2026 19:30:00 +0000

Type Values Removed Values Added
Description IBM Guardium Data Protection 12.0, 12.1, 12.2 is vulnerable to a heap-based out-of-bounds read in the TDS7 LOGIN7 protocol parser. A remote attacker could send a specially crafted TDS LOGIN7 packet containing invalid offset or length values, potentially causing information disclosure or denial of service.
Title IBM Guardium Data Protection Out-of-bounds Read
First Time appeared Ibm
Ibm guardium Data Protection
Weaknesses CWE-125
CPEs cpe:2.3:a:ibm:guardium_data_protection:12.2.0:*:*:*:*:*:*:*
cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:*
Vendors & Products Ibm
Ibm guardium Data Protection
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H'}


Subscriptions

Ibm Guardium Data Protection
cve-icon MITRE

Status: PUBLISHED

Assigner: ibm

Published:

Updated: 2026-10-08T19:13:47.881Z

Reserved: 2026-08-28T15:53:36.828Z

Link: CVE-2026-82334

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-10-08T20:17:36.737

Modified: 2026-10-08T20:49:50.083

Link: CVE-2026-82334

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-10-08T21:45:16Z

Weaknesses