Denial-of-Service Vulnerability in IBM Guardium Data Protection
CVE-2026-84276

7.5HIGH

Key Information:

Vendor

IBM

Vendor
CVE Published:
8 October 2026

What is CVE-2026-84276?

IBM Guardium Data Protection 12.2.2 is susceptible to a denial-of-service issue due to a flaw in the edge-controller. An unauthenticated attacker with network access can exploit this vulnerability by sending malformed task data to the gRPC service. This can result in an unchecked type assertion, leading to an unexpected termination of the edge-controller process, disrupting service availability and impacting data protection measures.

Affected Version(s)

Guardium Data Protection 12.2.2

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.