PT-2025-47207 · Ibm · Ibm Storage Virtualize

Published

2025-11-14

·

Updated

2025-12-08

·

CVE-2025-36118

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions IBM Storage Virtualize versions 8.4 through 9.1
Description The IKEv1 implementation contains a flaw that could allow remote attackers to obtain sensitive information from device memory during a Security Association (SA) negotiation request.
Recommendations IBM Storage Virtualize version 8.4 should be updated. IBM Storage Virtualize version 8.5 should be updated. IBM Storage Virtualize version 8.7 should be updated. IBM Storage Virtualize version 9.1 should be updated.

Fix

Weakness Enumeration

Related Identifiers

BDU:2025-14685
CVE-2025-36118

Affected Products

Ibm Storage Virtualize