Impact
The patch installer for IBM Guardium Data Protection 12.2 performs digital signature verification to protect against tampering. A bug in this verification allows a local attacker to bypass the check and run arbitrary code with root privileges during installation. Although the flaw requires local access, the resulting escalation grants full system compromise and the ability to modify or exfiltrate protected data.
Affected Systems
IBM Guardium Data Protection version 12.2, deployed on Linux platforms, is vulnerable. The official fix is the SqlGuard_12.0p233_FixPack, which IBM publishes on its Fix Central site for the 12.2 release. Only this version is listed as affected; earlier releases are not referenced as impacted.
Risk and Exploitability
The CVSS score of 7.8 classifies the flaw as high severity. EPSS is not available, and the vulnerability is not currently listed in the CISA KEV catalog. The attack vector is local, requiring the attacker to have installation privileges or local system access. If the flaw is triggered, the attacker can achieve arbitrary code execution with root rights, giving full control over the host. The combination of high impact and local privilege escalation makes it a priority for rapid remediation.
OpenCVE Enrichment