Description


IBM Security Verify Access 10.0 through 10.0.9.2 and IBM Verify Identity Access 11.0 through 11.0.3 could allow a denial of service due to a heap-based out-of-bounds read. A remote attacker could send a specially crafted request that causes a limited out‑of‑bounds memory read.

Weaknesses



CWE-125

CVSS impact metrics


CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L

3.7 · Low

Information


Source identifier

[email protected]

Vulnerability status

Analyzed

Published

2026-10-08T21:17:54.937Z

19 hours ago

Last modified

2026-10-09T14:16:42.260Z

2 hours ago