{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/products/guardium-data-protection-12.0-12.1-12.2/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:ibm:guardium_data_protection:12.2.2:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-84276"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["Guardium Data Protection (12.2.2)","Guardium Data Protection (12.2)","Guardium Data Protection (12.1, 12.2.2)","Guardium Data Protection (12.0, 12.1, 12.2)"],"_cs_severities":["critical"],"_cs_tags":["denial-of-service","vulnerability","cve-2026-84276","xss","web-vulnerability","cve","ibm","network-security","privilege-escalation","rce","path-traversal","cve-2026-81932","sql-injection"],"_cs_type":"advisory","_cs_vendors":["IBM"],"content_html":"\u003cp\u003eIBM Guardium Data Protection version 12.2.2 contains a high-severity denial-of-service (DoS) vulnerability identified as CVE-2026-84276. The vulnerability exists within the edge-controller component. An unauthenticated remote attacker with network connectivity to the edge-controller gRPC service can transmit specifically crafted, malformed task data to the application. Due to an unchecked type assertion within the code handling these gRPC requests, the edge-controller process encounters an unhandled exception and terminates unexpectedly. This disruption impacts the availability of the data protection services managed by the edge-controller. Defenders should monitor for unexpected restarts of the edge-controller process and restrict access to the gRPC service to known, trusted infrastructure.\u003c/p\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of this vulnerability results in an immediate service disruption of the edge-controller component within IBM Guardium Data Protection 12.2.2. Organizations relying on this platform for sensitive data protection and monitoring will lose visibility and security enforcement during the period of service unavailability. This vulnerability is particularly critical for environments where the edge-controller is internet-exposed or reachable from untrusted network segments.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritize patching for all affected IBM Guardium Data Protection 12.2.2 installations to the version addressing CVE-2026-84276. In the interim, restrict network access to the gRPC service associated with the edge-controller to only trusted management subnets using network firewalls or ACLs. Audit infrastructure logs for repeated crash events or unexpected service restarts of the edge-controller process.\u003c/p\u003e\n","date_modified":"2026-10-09T00:11:09Z","date_published":"2026-10-08T19:40:20Z","id":"https://feed.craftedsignal.io/briefs/2026-10-ibm-guardium-dos/","summary":"IBM Guardium Data Protection 12.2.2 is susceptible to an unauthenticated remote denial-of-service attack via malformed gRPC task data that causes the edge-controller process to crash.","title":"Denial-of-Service Vulnerability in IBM Guardium Data Protection","url":"https://feed.craftedsignal.io/briefs/2026-10-ibm-guardium-dos/"}],"language":"en","title":"CraftedSignal Threat Feed - Guardium Data Protection (12.0, 12.1, 12.2)","version":"https://jsonfeed.org/version/1.1"}