7.5
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Description
IBM Storage Virtualize 8.4, 8.5, 8.7, and 9.1 IKEv1 implementation allows remote attackers to obtain sensitive information from device memory via a Security Association (SA) negotiation request.
Basic Information
ID
CVE-2025-36118
Source
ibm
Published
Nov 17, 2025 at 20:47
Modified
Nov 17, 2025 at 20:57
Affected Product
Vendor
IBM
Product
Storage Virtualize
Version
8.4
Affected Versions
IBM Storage Virtualize 8.4
IBM Storage Virtualize 8.5
IBM Storage Virtualize 8.7
IBM Storage Virtualize 9.1
IBM Storage Virtualize 8.5
IBM Storage Virtualize 8.7
IBM Storage Virtualize 9.1