IBM Cloud Pak For Business Automation 25.0.0, 24.0.1, and 24.0.0 could allow an authenticated user to cause a denial of service due to the improper validation of input length.
The product receives input that is expected to specify a quantity (such as size or length), but it does not validate or incorrectly validates that the quantity has the required properties.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cloud_pak_for_business_automation | Ibm | 24.0.0 (including) | 24.0.0 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.0-interim_fix_001 (including) | 24.0.0-interim_fix_001 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.0-interim_fix_002 (including) | 24.0.0-interim_fix_002 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.0-interim_fix_003 (including) | 24.0.0-interim_fix_003 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.0-interim_fix_004 (including) | 24.0.0-interim_fix_004 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.1 (including) | 24.0.1 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.1-interim_fix_001 (including) | 24.0.1-interim_fix_001 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.1-interim_fix_002 (including) | 24.0.1-interim_fix_002 (including) |
| Cloud_pak_for_business_automation | Ibm | 24.0.1-interim_fix_004 (including) | 24.0.1-interim_fix_004 (including) |
| Cloud_pak_for_business_automation | Ibm | 25.0.0 (including) | 25.0.0 (including) |
| Cloud_pak_for_business_automation | Ibm | 25.0.0-interim_fix_001 (including) | 25.0.0-interim_fix_001 (including) |
Specified quantities include size, length, frequency, price, rate, number of operations, time, and others. Code may rely on specified quantities to allocate resources, perform calculations, control iteration, etc.