Description

IBM Semeru Runtime 8.0.302.0 through 8.0.442.0, 11.0.12.0 through 11.0.26.0, 17.0.0.0 through 17.0.14.0, and 21.0.0.0 through 12.0.6.0 is vulnerable to a denial of service caused by a buffer overflow and subsequent crash, due to a defect in its native AES/CBC encryption implementation.

INFO

Published Date :

2025-05-14T18:50:27.327Z

Last Modified :

2025-08-28T14:12:21.020Z

Source :

ibm
AFFECTED PRODUCTS

The following products are affected by CVE-2025-2900 vulnerability.

Vendors Products
Ibm
  • Semeru Runtime
Redhat
  • Enterprise Linux
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact