CVE-2025-36156

🟡 Monitoruj

Przepełnienie bufora w IBM InfoSphere Data Replication umożliwia lokalne wykonanie kodu.

CVSS
7.4
EPSS
0.1%
Exploit
none
Vendor
ibm
Opis źródłowy (NVD)

IBM InfoSphere Data Replication VSAM for z/OS Remote Source 11.4 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local user with access to the files storing CECSUB or CECRM on the container could overflow the buffer and execute arbitrary code on the system.

buffer-overflow Brak patcha
Źródła i daty
ŹródłoWartość
NVD – CVSS7.4
CISA KEV (aktywnie wykorzystywane)Nie
FIRST EPSS (prawdopodobieństwo exploita)0.1%
Opublikowano (NVD)2025-10-07 18:15:59 UTC
Ostatnia modyfikacja (NVD)2026-10-08 22:10:00 UTC
Referencje