Release Notes
Abstract
This document lists the quarterly updates for IBM Guardium Database Protection Service (DPS). The IBM Guardium team develops vulnerability assessment tests on a quarterly basis for all newly released database vendor versions and patches, Common Vulnerabilities and Exposures (CVE) records, known issues (APARs) for IBM Db2 for z/OS and IBM iSeries, and predefined groups.
Content
This document is intended for Guardium Data Protection and Guardium Vulnerability Assessment version 11.x and 12.x clients. DPS updates are separate from Guardium Data Protection patch updates (GPU) and bundle patches. Update your Guardium system with the latest DPS patch file available on IBM Support Fix Central to keep your vulnerability assessment tests current with industry best practices and help protect against newly discovered vulnerabilities. The latest Quarterly DPS patch contains all previous DPS update data for its major version (11.x or 12.x). For more information, see Installing IBM Guardium Database Protection Service updates.
Note: DPS only covers CVE related to database servers. CVE related to applications that use the database server are out of scope. CVE with a Common Vulnerability Scoring System (CVSS) score of 7 or higher trigger a rapid response workflow and new tests are released within 5-7 business days through ad hoc Rapid Response DPS updates on Fix Central.
Version | Requirements |
|---|---|
11.x | There are no specific requirements for loading the quarterly DPS release on Guardium version 11.x. |
12.x | There are no specific requirements for loading the quarterly DPS release on Guardium version 12.x. |
| Version | Filename and MD5SUM |
|---|---|
| 11.x | Filename: Guardium_V11_Quarterly_DPS_2026_Q1_20260216.enc MD5SUM: c82130a323b8198c6164820945fa4c12 |
| 12.x | Filename: Guardium_V12_Quarterly_DPS_2026_Q1_20260216.enc MD5SUM: c689cd442395893bba24c477c1feba7d |
Database | Version 11.x | Version 12.x |
|---|---|---|
| DB2 Database | 12.1+Fix Pack "3.0", s2510091412, O | 12.1+Fix Pack "3.0", s2510091412, O |
Informix Database | 14.10+FC13 | 14.10+FC13 |
| Microsoft SQL Server Database | 17.0+1050 16.0+4230 15.0+4455 14.0+3515 13.0+7070 | 17.0+1050 16.0+4230 15.0+4455 14.0+3515 13.0+7070 |
MySQL Database | 9.6+0* 8.4+8* 8.0+45* | 9.6+0* 8.4+8* 8.0+45* |
Oracle Database | 23+RU 23.26.1.0.0 21+RU 21.21.0.0.260120 19+RU 19.30.0.0.260120 | 23+RU 23.26.1.0.0 21+RU 21.21.0.0.260120 19+RU 19.30.0.0.260120 |
Sybase Database | 16.0+04.08 | 16.0+04.08 |
Teradata PDE | 20.00.24+65 17.20.03+47 | 20.00.24+65 17.20.03+47 |
Teradata TDBMS | 20.00.24+65 17.20.03+47 | 20.00.24+65 17.20.03+47 |
Teradata TDGSS | 20.00.24+65 17.20.03+47 | 20.00.24+65 17.20.03+47 |
Teradata TGTW | 20.00.24+65 17.20.03+47 | 20.00.24+65 17.20.03+47 |
Postgres | 13.23+0* 14.20+0* 15.15+0* 16.11+0* 17.7+0* 18.1+0* | 13.23+0* 14.20+0* 15.15+0* 16.11+0* 17.7+0* 18.1+0* |
| SybaseIQ Database | 16.2+sp00.01 16.1+sp05.16 | 16.2+sp00.01 16.1+sp05.16 |
MongoDB Database | 5.0+32 6.0+27 7.0+28 8.0+17 8.2+3 | 5.0+32 6.0+27 7.0+28 8.0+17 8.2+3 |
SAP Hana Database | 2.00+89 | 2.00+89 |
Cloudera Hadoop | 7.3+1.p600 7.1+9.p1069 | 7.3+1.p600 7.1+9.p1069 |
DataStax Cassandra DSE | 5.1+49 6.8+62 6.9+18 | 5.1+49 6.8+62 6.9+18 |
DB2 LUW Database Special Security Fixes | 11.5+9.0, special_55706, O 11.5+9.0, special_57304, O 11.5+9.0, special_69673, O 10.5+11, special_41606 11.1+7, special_41620 12.1+2.0, special_70120, O 12.1+3.0, special_69885, O 11.5+9.0, special_66394, O 12.1+2.0, special_72149, O 12.1+3.0, special_71609, O 12.1+2.0, special_72296, O | 11.5+9.0, special_55706, O 11.5+9.0, special_57304, O 11.5+9.0, special_69673, O 10.5+11, special_41606 11.1+7, special_41620 12.1+2.0, special_70120, O 12.1+3.0, special_69885, O 11.5+9.0, special_66394, O 12.1+2.0, special_72149, O 12.1+3.0, special_71609, O 12.1+2.0, special_72296, O |
Couchbase | 7.6+8 7.2+9 | 7.6+8 7.2+9 |
Neo4j | 2025.10+1 2025.11+2 2025.12+1 5.26+19 | 2025.10+1 2025.11+2 2025.12+1 5.26+19 |
MariaDB | 11.8+5 11.4+9 10.6+24 | 11.8+5 11.4+9 10.6+24 |
Percona MySQL | 8.4+7 8.0+44 | 8.4+7 8.0+44 |
Apache Cassandra | 5.0+6 | 5.0+6 |
EDB Postgres | 18.1+0* 17.7+0* 16.11+0* 15.15+0* 14.20+0* | |
CockroachDB | 24.3+25 25.2+11 25.3+7 25.4+3 |
| Versions | Test ID | Description | Database type | What changed? |
|---|---|---|---|---|
| 11.x, 12.x | -- | -- | -- | -- |
| Versions | Test ID | Description | Database type | What changed? |
|---|---|---|---|---|
| 11.x, 12.x | -- | -- | -- | -- |
| Versions | ID | Name type | New or updated items | What changed? |
|---|---|---|---|---|
| 11.x, 12.x | -- | -- | -- | -- |
| Versions | Test name | Database type | CVE score |
|---|---|---|---|
| 11.x, 12.x | CVE-2026-21975 | ORACLE | 4.5 |
| 11.x, 12.x | CVE-2025-36006 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36008 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36131 | DB2 | 4.6 |
| 11.x, 12.x | CVE-2025-36136 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-36185 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-2668 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36001 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36070 | DB2 | 7.5 |
| 11.x, 12.x | CVE-2025-36098 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36123 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-36184 | DB2 | 7.2 |
| 11.x, 12.x | CVE-2025-36353 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-36365 | DB2 | 7.5 |
| 11.x, 12.x | CVE-2025-36366 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36384 | DB2 | 7.8 |
| 11.x, 12.x | CVE-2025-36387 | DB2 | 6.5 |
| 11.x, 12.x | CVE-2025-36407 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-36423 | DB2 | 5.5 |
| 11.x, 12.x | CVE-2025-36428 | DB2 | 5.3 |
| 11.x, 12.x | CVE-2025-36442 | DB2 | 7.5 |
| 11.x, 12.x | CVE-2026-20803 | MS SQL SERVER | 7.2 |
| 11.x, 12.x | CVE-2025-53062 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21929 | MYSQL | 5.3 |
| 11.x, 12.x | CVE-2026-21936 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21937 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21941 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21948 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21949 | MYSQL | 6.5 |
| 11.x, 12.x | CVE-2026-21950 | MYSQL | 6.5 |
| 11.x, 12.x | CVE-2026-21952 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21964 | MYSQL | 4.9 |
| 11.x, 12.x | CVE-2026-21965 | MYSQL | 2.7 |
| 11.x, 12.x | CVE-2026-21968 | MYSQL | 6.5 |
| 11.x, 12.x | CVE-2025-11979 | MONGODB | 6.5 |
| 11.x, 12.x | CVE-2025-12657 | MONGODB | 5.5 |
| 11.x, 12.x | CVE-2025-12893 | MONGODB | 5.4 |
| 11.x, 12.x | CVE-2025-13507 | MONGODB | 6.5 |
| 11.x, 12.x | CVE-2025-13643 | MONGODB | 6.5 |
| 11.x, 12.x | CVE-2025-14345 | MONGODB | 5.4 |
| 11.x, 12.x | DT452078 | IBM iSeries | N/A |
| 11.x, 12.x | DT452327 | IBM iSeries | N/A |
| 11.x, 12.x | DT452889 | IBM iSeries | N/A |
| 11.x, 12.x | DT453608 | IBM iSeries | N/A |
| 11.x, 12.x | DT455093 | IBM iSeries | N/A |
| 11.x, 12.x | DT455240 | IBM iSeries | N/A |
| 11.x, 12.x | DT455251 | IBM iSeries | N/A |
| 11.x, 12.x | DT455260 | IBM iSeries | N/A |
| 11.x, 12.x | DT455312 | IBM iSeries | N/A |
| 11.x, 12.x | DT455362 | IBM iSeries | N/A |
| 11.x, 12.x | DT455392 | IBM iSeries | N/A |
| 11.x, 12.x | DT455478 | IBM iSeries | N/A |
| 11.x, 12.x | DT455883 | IBM iSeries | N/A |
| 11.x, 12.x | DT455920 | IBM iSeries | N/A |
| 11.x, 12.x | DT456420 | IBM iSeries | N/A |
| 11.x, 12.x | DT457045 | IBM iSeries | N/A |
| 11.x, 12.x | DT457586 | IBM iSeries | N/A |
Was this topic helpful?
Document Information
Modified date:
16 February 2026
UID
ibm17260158