CVE-2025-33101

Source
https://cve.org/CVERecord?id=CVE-2025-33101
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-33101.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2025-33101
Published
2026-02-17T20:22:03Z
Modified
2026-07-10T02:46:40Z
Severity
  • 5.9 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

IBM Concert 1.0.0 through 2.1.0 could allow an attacker to obtain sensitive information using man in the middle techniques due to improper clearing of heap memory.

References

Affected packages

Git / github.com/ibm/concert

Affected ranges

Type
GIT
Repo
https://github.com/ibm/concert
Events
Database specific
Show details
{
    "cpe": "cpe:2.3:a:ibm:concert:*:*:*:*:*:*:*:*",
    "extracted_events": [
        {
            "introduced": "1.0.0"
        },
        {
            "fixed": "2.2.0"
        }
    ],
    "source": "CPE_RANGE"
}

Affected versions

1.*
1.0.0
v1.*
v1.0.1
v1.0.2
v1.0.2.1
v1.0.2.2
v1.0.3
v1.0.4
v1.0.4.1
v1.0.5.1
v1.0.5.2
v1.0.5.4
v1.1.0
v2.*
v2.0.0.0
v2.0.0.1
v2.0.0.2
v2.1.0

Database specific

source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2025-33101.json"