PT-2024-9572 · Ibm · Ibm Watson Speech Services Cartridge For Ibm Cloud Pak For Data

Published

2024-11-25

·

Updated

2025-08-15

·

CVE-2024-49353

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions IBM Watson Speech Services Cartridge for IBM Cloud Pak for Data versions 4.0.0 through 5.0.2
Description The issue is caused by synchronization errors when using a shared resource, potentially allowing a remote attacker to cause a denial of service. The problem arises from improper input checking to resources used concurrently, which might lead to unexpected states and possibly result in a crash.
Recommendations For versions 4.0.0 through 5.0.2, consider restricting access to concurrently used resources until a patch is available. As a temporary workaround, avoid using the resources that are used concurrently until the issue is resolved. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Race Condition

Weakness Enumeration

Related Identifiers

BDU:2024-11279
CVE-2024-49353

Affected Products

Ibm Watson Speech Services Cartridge For Ibm Cloud Pak For Data