CVE-2015-0198: Critical severity ibm general parallel file system storage server vulnerability
IBM General Parallel File System (GPFS) 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1 before 4.1.0.7 in certain cipherList configurations allows remote attackers to bypass authentication and execute arbitrary programs as root via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0198?
CVE-2015-0198 has a high severity rating due to the potential for remote authentication bypass and arbitrary code execution as root.
How do I fix CVE-2015-0198?
To fix CVE-2015-0198, upgrade your IBM General Parallel File System to the latest version that addresses this vulnerability.
Which versions of IBM General Parallel File System are affected by CVE-2015-0198?
CVE-2015-0198 affects IBM General Parallel File System versions 3.4 before 3.4.0.32, 3.5 before 3.5.0.24, and 4.1 before 4.1.0.7.
What are the potential impacts of CVE-2015-0198?
The potential impact of CVE-2015-0198 includes unauthorized remote access and execution of arbitrary programs with root privileges.
Who can exploit CVE-2015-0198?
CVE-2015-0198 can be exploited by remote attackers using specific cipherList configurations.