CVE-2023-47150: IBM Common Cryptographic Architecture

High severity, CVSS 7.5. EPSS: 0.6% chance of exploitation in the next 30 days.

IBM Common Cryptographic Architecture (CCA) 7.0.0 through 7.5.36 could allow a remote user to cause a denial of service due to incorrect data handling for certain types of AES operations. IBM X-Force ID: 270602.

Affected products

  • IBM Common Cryptographic Architecture: from 7.0.0, before 7.5.37 (fixed in 7.5.37)

Published 2024-03-26. Last modified 2026-06-17.