Vulnerability Bulletins

IBM Security Bulletin:The GPFS pattern provided with IBM PureApplication System is affected by security vulnerabilities. (CVE-2015-4974 and CVE-2015-4981)

   
Affected software IBM
 
Security vulnerabilities have been identified in the current levels of IBM Spectrum Scale V4.1.1, IBM GPFS V4.1 and V3.5: - could allow a local non privileged attacker to execute commands with root privileges (CVE-2015-4974) - could allow a local non privileged attacker to read system memory contents (CVE-2015-4981) IBM PureApplication System provides a GPFS pattern and addressed the applicable CVEs. CVE(s): CVE-2015-4974 and CVE-2015-4981Affected product(s) and affected version(s):IBM

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_the_gpfs_pattern_provided_with_ibm_pureapplication_system_is_affected_by_security_vulnerabilities_cve_2015_4974_and_cve_2015_4981?lang=en_us