CVE-2026-84058: IBM Guardium Data Protection
High severity, CVSS 8.1. EPSS: 0.4% chance of exploitation in the next 30 days.
IBM Guardium Data Protection 12.0, 12.1, and 12.2 is vulnerable to a buffer overrun in the TDS (Microsoft SQL Server) PRELOGIN packet decoder. A remote attacker who can send a specially crafted TDS PRELOGIN packet to a network monitored by an IBM Guardium Collector may cause a denial of service or potentially execute arbitrary code on the Collector appliance.
Affected products
- IBM Guardium Data Protection: version 12.0 only; version 12.1 only; version 12.2 only
Published 2026-10-08. Last modified 2026-10-10.