PT-2025-23089 · Ibm · Ibm Sterling Secure Proxy
Published
2025-05-28
·
Updated
2025-05-29
·
CVE-2024-38341
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:C/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Sterling Secure Proxy versions 6.0.0.0 through 6.0.3.1
IBM Sterling Secure Proxy versions 6.1.0.0
IBM Sterling Secure Proxy versions 6.2.0.0 through 6.2.0.1
Description
The issue is related to the use of weaker than expected cryptographic algorithms, which could allow an attacker to decrypt highly sensitive information.
Recommendations
For versions 6.0.0.0 through 6.0.3.1, update to a version that uses stronger cryptographic algorithms.
For version 6.1.0.0, update to a version that uses stronger cryptographic algorithms.
For versions 6.2.0.0 through 6.2.0.1, update to a version that uses stronger cryptographic algorithms.
As a temporary workaround, consider restricting access to sensitive information until a patch is available.
Fix
Inadequate Encryption Strength
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Sterling Secure Proxy