6.5

CVE-2022-22423

IBM Common Cryptographic Architecture (CCA 5.x MTM for 4767 and CCA 7.x MTM for 4769) could allow a local user to cause a denial of service due to improper input validation. IBM X-Force ID: 223596.

Data is provided by the National Vulnerability Database (NVD)
IbmCommon Cryptographic Architecture SwEditionmtm_for_4767 Version >= 5.0.0 < 5.7.12
   IbmAix Version-
   IbmI Version-
   LinuxLinux Kernel Version-
IbmCommon Cryptographic Architecture SwEditionmtm_for_4769 Version >= 7.0.0 < 7.3.44
   IbmAix Version-
   IbmI Version-
   IbmPowerlinux Version-
   LinuxLinux Kernel Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.11% 0.298
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5.5 1.8 3.6
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
psirt@us.ibm.com 6.5 2 4
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:C/C:N/I:N/A:H
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.