Vulnerability Bulletins |
IBM Security Bulletin: MCP7 and MCP8 affected by Open Source - 1 issue for pam (CVE-2015-3238 ) |
|
| Affected software | IBM |
|
IBM SmartCloud Entry is vulnerable to a pam vulnerability, which allows a local attacker exploit this vulnerability to enumerate user names and cause the system to hang. CVE(s): CVE-2015-3238Affected product(s) and affected version(s):IBM SmartCloud Entry 2.2.0 through 2.2.0.4 Appliance fix pack 3 IBM SmartCloud Entry 2.3.0 through 2.3.0.4 Appliance fix pack 3 IBM SmartCloud Entry 2.4.0 through 2.4.0.4 Appliance fix pack 3 IBM SmartCloud Entry 3.1.0 through 3.1.0.4 Appliance fix pack 17 IBM More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_mcp7_and_mcp8_affected_by_open_source_1_issue_for_pam_cve_2015_3238?lang=en_us |
|






