Boletines de Vulnerabilidades

IBM Security Bulletin: IBM Spectrum Scale (GPFS) Hadoop connector is affected by a security vulnerability (CVE-2015-7430)


Información sobre el sistema

   
Software afectado IBM

Descripción

A security vulnerability has been identified in the IBM Spectrum Scale (GPFS) Hadoop connector which could allow an unprivileged user the ability to read, write, modify, or delete any data in a GPFS file system (CVE-2015-7430) CVE(s): CVE-2015-7430 Affected product(s) and affected version(s): IBM Spectrum Scale (GPFS) Hadoop connector 1.1.1, 2.4, 2.5, and 2.7.0-0 thru 2.7.0-2 Refer to the following reference URLs for remediation and additional vulnerability details: Source Bulletin:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_ibm_spectrum_scale_gpfs_hadoop_connector_is_affected_by_a_security_vulnerability_cve_2015_74301?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2015-7430 and CVE-2015-7450.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2015-12-03

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT