CVE-2025-14917: IBM WebSphere Application Server Liberty could provide weaker than expected security
IBM WebSphere Application Server - Liberty 17.0.0.3 through 26.0.0.3 IBM WebSphere Application Server Liberty could provide weaker than expected security when administering security settings.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
IBM WebSphere Application Server Libertyto a version that resolves this vulnerability.Fixed in 26.0.0.4 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Patch PH70078
Event History
Frequently Asked Questions
What is the severity of CVE-2025-14917?
CVE-2025-14917 has been rated with a severity level indicating it could lead to weaker security configurations.
How do I fix CVE-2025-14917?
To fix CVE-2025-14917, ensure that you update IBM WebSphere Application Server Liberty to a version above 26.0.0.3.
What versions of IBM WebSphere Application Server Liberty are affected by CVE-2025-14917?
CVE-2025-14917 affects IBM WebSphere Application Server Liberty versions from 17.0.0.3 up to and including 26.0.0.3.
What kind of security vulnerability is CVE-2025-14917?
CVE-2025-14917 is a vulnerability that may allow weaker than expected security settings when administering the software.
Is there a workaround for CVE-2025-14917?
There is no specific workaround provided for CVE-2025-14917; updating to a secure version is recommended.