IBM QRadar SIEM: Third-party component vulnerabilities closed
Among other things, now closed security vulnerabilities in the Linux kernel endanger IBM QRadar SIEM.
(Image: AFANASEV IVAN/Shutterstock.com)
Because several third-party components in IBM's QRadar SIEM have software vulnerabilities, attackers can target the IT security solution. An update with security patches has now been released.
Protecting instances from potential attacks
In a warning message, the developers assure that they have resolved the security issues in IBM's QRadar SIEM 7.5.0 UP15 IF03. According to the message, they have implemented updates for 29 vulnerabilities in components such as the Linux kernel, OpenSSH, and Vim.
The majority of the vulnerabilities are classified as "high" threat level. At these points, attackers can initiate, among other things, malware attacks (e.g., in libarchive CVE-2026-5121 "high").
Videos by heise
It is not clear from IBM's warning message whether attackers are already exploiting the vulnerabilities. It also remains unclear how administrators can identify already attacked systems.
(des)