First published: Fri Aug 22 2014(Updated: )
Unspecified vulnerability on IBM Power 7 Systems 740 before 740.70 01Ax740_121, 760 before 760.40 Ax760_078, and 770 before 770.30 01Ax770_062 allows local users to gain Service Processor privileges via unknown vectors.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Power 760 firmware | =760.00_ax760_034_034 | |
IBM Power 760 firmware | =760.10_am760_044_034 | |
IBM Power 760 firmware | =760.10_ax760_043_034 | |
IBM Power 760 firmware | =760.10_ax760_043_043 | |
IBM Power 760 firmware | =760.11_ax760_051_034 | |
IBM Power 760 firmware | =760.20_ah760_062_043 | |
IBM Power 760 firmware | =760.20_am760_062_034 | |
IBM Power 760 firmware | =760.30_ah760_068_043 | |
IBM Power 760 firmware | =760.30_am760_068_034 | |
IBM Power 760 firmware | =760.31_ah760_069_043 | |
IBM Power 760 firmware | =760.31_am760_069_034 | |
IBM Power 770 firmware | =9117-mmd | |
IBM Power 780 | =9179-mhd | |
IBM Power 795 | =9119-fhb | |
IBM Power ESE | =8412-ead | |
IBM Power 740 firmware | =740.00_01ax740_042_042 | |
IBM Power 740 firmware | =740.10_01ax740_043_042 | |
IBM Power 740 firmware | =740.15_01ax740_045_042 | |
IBM Power 740 firmware | =740.16_01ax740_046_042 | |
IBM Power 740 firmware | =740.20_01ax740_075_042 | |
IBM Power 740 firmware | =740.21_01ax740_077_042 | |
IBM Power 740 firmware | =740.40_01ax740_088_042 | |
IBM Power 740 firmware | =740.50_01ax740_095_042 | |
IBM Power 740 firmware | =740.51_01ax740_098_042 | |
IBM Power 740 firmware | =740.52_01ax740_100_042 | |
IBM Power 740 firmware | =740.60_01ax740_110_042 | |
IBM Power 740 firmware | =740.61_01ax740_112_042 | |
IBM Power 710 | =8231-e1c | |
IBM Power 720 | =8202-e4c | |
IBM Power 730 | =8231-e2c | |
IBM Power 740 | =8205-e6c | |
IBM Power 770 firmware | =9117-mmc | |
IBM Power 780 | =9179-mhc | |
IBM Power 770 firmware | =770.00_01al770_032_032 | |
IBM Power 770 firmware | =770.10_01ax770_038_032 | |
IBM Power 770 firmware | =770.20_01ax770_048_032 | |
IBM Power 770 firmware | =770.21_01ax770_052_032 | |
IBM Power 770 firmware | =770.22_01ax770_055_032 | |
IBM Power 710 | =8231-e1d | |
IBM Power 710 | =8268-e1d | |
IBM Power 720 | =8202-e4d | |
IBM Power 730 | =8231-e2d | |
IBM Power 740 | =8205-e6d | |
IBM Power 750 | =8408-e8d | |
IBM Power 760 firmware | =9109-rmd | |
IBM PowerLinux 7R1 | =8246-l1d | |
IBM PowerLinux 7R1 | =8246-l1t | |
IBM PowerLinux 7R2 | =8246-l2d | |
IBM PowerLinux 7R2 | =8246-l2t |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2013-6306 is not explicitly rated, but it allows local users to gain Service Processor privileges, potentially leading to serious security breaches.
To fix CVE-2013-6306, update the IBM Power firmware on affected systems to the latest versions available.
CVE-2013-6306 affects IBM Power 740, 760, and 770 systems with specific firmware versions prior to the patches.
CVE-2013-6306 requires local access to exploit, meaning it cannot be exploited remotely without local user privileges.
The potential impacts of CVE-2013-6306 include unauthorized access to Service Processor privileges, which may compromise system integrity and security.