Vulnerability Bulletins |
IBM Security Bulletin: IBM Spectrum Scale and IBM GPFS are affected by security vulnerabilities (CVE-2016-2985 and CVE-2016-2984) |
|
| Affected software | IBM |
|
Security vulnerabilities have been identified in all levels of IBM Spectrum Scale and IBM GPFS that could allow: – a local attacker to execute commands as root by setting environment variables processed by setuid programs (CVE-2016-2985) – a local attacker to execute commands as root by supplying command line parameters to setuid programs (CVE-2016-2984)CVE(s): CVE-2016-2985, CVE-2016-2984Affected product(s) and affected version(s):IBM Spectrum Scale V4.2.0.0 thru V4.2.0.3 IBM More info: https://www.ibm.com/blogs/psirt/ibm-security-bulletin-ibm-spectrum-scale-and-ibm-gpfs-are-affected-by-security-vulnerabilities-cve-2016-2985-and-cve-2016-2984/ |
|






