Analysis and contextual insights are available on OpenCVE Cloud.
Vendor Solution
For all affected versions, IBM strongly recommends addressing this vulnerability now by applying the latest IBM Guardium Data Protection Windows S-TAP patch: https://www.ibm.com/support/fixcentral/swg/quickorder?parent=IBM%20Security&product=ibm/Information+Management/InfoSphere+Guardium&release=All&platform=All&function=fixId&fixids=Guardium_12.x.p102_r120204351_S-TAP_Windows&includeSupersedes=0&source=fc
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://www.ibm.com/support/pages/node/7291676 |
|
Thu, 08 Oct 2026 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | IBM Guardium Data Protection 12.0, 12.1, 12.2 is affected by an improper validation of user-supplied pointers in the WfpMonitor kernel driver. Certain METHOD_NEITHER IOCTL handlers dereference user-controlled pointers without adequate probing and exception handling, potentially allowing a privileged local attacker to cause a system crash or perform limited kernel-memory reads. | |
| Title | Security vulnerability affects the Windows S-TAP component as part of IBM Guardium Data Protection | |
| First Time appeared |
Ibm
Ibm guardium Data Protection |
|
| Weaknesses | CWE-119 | |
| CPEs | cpe:2.3:a:ibm:guardium_data_protection:12.0:*:*:*:*:*:*:* cpe:2.3:a:ibm:guardium_data_protection:12.1:*:*:*:*:*:*:* cpe:2.3:a:ibm:guardium_data_protection:12.2:*:*:*:*:*:*:* |
|
| Vendors & Products |
Ibm
Ibm guardium Data Protection |
|
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: ibm
Published:
Updated: 2026-10-08T18:57:07.109Z
Reserved: 2026-09-01T16:03:21.343Z
Link: CVE-2026-84290
No data.
Status : Awaiting Analysis
Published: 2026-10-08T19:20:51.530
Modified: 2026-10-08T20:49:50.083
Link: CVE-2026-84290
No data.
OpenCVE Enrichment
Updated: 2026-10-08T20:45:14Z
-
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer