Release Notes
Abstract
This document is intended for Guardium Vulnerablity Assessment 12.x clients who upgrade to Guardium Data Protection versions 12.2.3 (GPU 12.0p230), 12.0p60, or 12.0p145. It lists the updates that are available for Guardium Database Protection Service (DPS), a subscription service that provides periodic updates to vulnerability tests as well as other predefined content, including reports, groups, and policies.
Content
This document is intended for Guardium Vulnerablity Assessment 12.x clients who upgrade to Guardium Data Protection 12.2.3 (GPU 12.0p230), or appliance patches 12.0p60 or 12.0p145. The Guardium 12.x Special DPS file described in this document must be applied after you upgrade to those 12.x versions from a previous version.
Customers should also check IBM Support Fix Central for the latest Rapid Response DPS release and apply it after uploading this special DPS file.
Attention
If this Special DPS update is not applied, customers might see some false positive results from their Vulnerability Assessment scans for Microsoft SQL Server CVE tests.
| Fix ID | Guardium_12.X_DPS-Special-Q2-2026 |
|---|---|
| File name | Guardium_V12_Quarterly_DPS_2026_Q2_20260617.enc |
| MD5SUM | ad382282a45ab9f93848c8a9a41f37c0 |
| Issue key | Summary |
|---|---|
| GRD-120727 | Assessment Tests for EDB PostgreSQL based on the latest CIS PostgreSQL 17 benchmarks |
GRD-121775 | Data source currency updates for Couchbase 7.6, 8.0 |
| GRD-121801 | Data source currency updates for DataStax Cassandra 6.8 |
GRD-121768 | Data source currency updates for Oracle 26ai (includes on-prem and autonomous cloud) |
New query-based tests
| Test ID | Description |
|---|---|
| 4425 | Ensure the log file destination directory is set correctly - EDB |
| 4426 | Ensure log_timezone is set correctly. - EDB |
| 4427 | Ensure backend runtime parameters are configured correctly - EDB |
| 4428 | Ensure logging of replication commands is configured - EDB |
| 4429 | Ensure log_error_verbosity is set correctly - EDB |
| 4430 | Ensure syslog messages are not lost due to size - EDB |
| 4431 | Ensure syslog messages are not suppressed - EDB |
| 4432 | Ensure that TLSv1.3, or later, is configured - EDB |
Updated query-based tests
| Test ID | Description |
|---|---|
| 4133 | Ensure excessive function privileges are revoked - EDB |
| 4137 | Ensure log_line_prefix is set correctly - EDB |
| 4140 | Ensure TLS is enabled - EDB |
| 4152 | Ensure WAL archiving is configured and functional - EDB |
| 4173 | The EDB Postgres Advanced Server must limit the number of concurrent sessions to an organization-defined number per user for all accounts. |
| Test ID | Test name |
|---|---|
| 8028 | CVE-2015-1761 |
| 8029 | CVE-2015-1762 |
| 8030 | CVE-2015-1763 |
| 8635 | CVE-2017-5715 |
| 8636 | CVE-2017-5753 |
| 8637 | CVE-2017-5754 |
| 8876 | CVE-2020-0618 |
| 9043 | CVE-2021-1636 |
| 9526 | CVE-2023-21528 |
| 9527 | CVE-2023-21704 |
| 9528 | CVE-2023-21705 |
| 9529 | CVE-2023-21713 |
| 9530 | CVE-2023-21718 |
| 9536 | CVE-2023-23384 |
| 9942 | CVE-2026-20803 |
| Group ID | Description |
|---|---|
| 462 | MarkLogic system roles |
| 463 | PHI Databases |
| 465 | HITRUST Server IPs |
| 466 | HITRUST Server IPs - Hierarchical |
| 467 | HITRUST Authorized Applications |
| 468 | HITRUST Authorized Users |
| 469 | HITRUST Privileged Users |
| 470 | HITRUST Authorized Client IPs |
| 471 | HIPAA PHI Databases |
| 472 | HIPAA PHI Objects |
| 473 | HIPAA PHI Server IPs |
| 474 | HIPAA PHI Server IPs - Hierarchical |
| 475 | HIPAA Authorized Healthcare Applications |
| 476 | HIPAA Authorized Client IPs |
| 477 | HIPAA Authorized Users |
| 478 | HIPAA Admin Users |
| 479 | LGPD Personal Data Authorized Client IPs |
| 480 | LGPD Personal Data DBs |
| 481 | LGPD Personal Data Sensitive Objects |
| 482 | LGPD Personal Data Authorized Server IPs |
| 483 | LGPD Personal Data Authorized Server IPs - Hierarchical |
| 484 | LGPD Personal Data Authorized Source Programs |
| 485 | LGPD Personal Data Admin Users |
| 486 | LGPD Personal Data Authorized Users |
| 487 | PDPA Personal Data Databases |
| 488 | PDPA Personal Data Sensitive Objects |
| 489 | PDPA Personal Data Server IPs |
| 490 | PDPA Authorized Applications |
| 491 | PDPA Authorized Users |
| 492 | PDPA Server IPs |
| 493 | PDPA Server IPs - Hierarchical |
| 494 | PIPEDA Personal Information Databases |
| 495 | PIPEDA Personal Information Server IPs |
| 496 | PIPEDA Personal Information Server IPs - Hierarchical |
| 497 | PIPEDA Authorized Applications |
| 498 | PIPEDA Authorized Users |
| 499 | POPIA Personal Information Databases |
| 500 | POPIA Personal Data Sensitive Objects |
| 501 | POPIA Personal Information Server IPs |
| 502 | POPIA Personal Information Server IPs - Hierarchical |
| 503 | POPIA Authorized Applications |
| 504 | POPIA Authorized Users |
| 505 | PDPA Admin Users |
| 507 | PIPEDA Personal Data Sensitive Objects |
| 508 | PIPEDA Admin Users |
| 509 | POPIA Admin Users |
| 510 | HITRUST - Sensitive Data Authorized Admin Users |
| 511 | HITRUST - Sensitive Object |
| 512 | HITRUST Admin Users |
| 513 | Privileged Database Grant Patterns |
| 514 | Authentication Failed Error Codes |
| 515 | DB Unavailability Error Codes |
| Issue key | Summary | APAR |
|---|---|---|
| GRD-123672 | Fixed false positives that occurred in Vulnerability Assessment tests with some Microsoft SQL Server CVE tests. | DT469687 |
Was this topic helpful?
Document Information
Modified date:
21 July 2026
UID
ibm17278751