GSKit in IBM Security Network Protection 5.3.1 before 5.3.1.7 and 5.3.2 allows remote attackers to discover credentials by triggering an MD5 collision.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www-01.ibm.com/support/docview.wss?uid=swg21974242 | patch vendor advisory |
http://www.securityfocus.com/bid/80883 | vdb entry |
http://www.securitytracker.com/id/1034696 | vdb entry |