CVE-2016-0361: Medium severity ibm general parallel file system storage server vulnerability
IBM General Parallel File System (GPFS) 3.5 before 3.5.0.29 efix 6 and 4.1.1 before 4.1.1.4 efix 9, when the Spectrum Scale GUI is used with DB2 on Linux, UNIX and Windows, allows remote authenticated users to obtain sensitive information via unspecified vectors, as demonstrated by discovering ADMIN passwords.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0361?
CVE-2016-0361 is classified as a moderate severity vulnerability that allows remote authenticated users to access sensitive information.
How do I fix CVE-2016-0361?
To fix CVE-2016-0361, update IBM General Parallel File System to version 3.5.0.29 efix 6 or 4.1.1.4 efix 9.
What systems are affected by CVE-2016-0361?
CVE-2016-0361 affects IBM General Parallel File System versions 3.5 and 4.1.1 prior to the specified efix versions.
What type of information can be exposed by CVE-2016-0361?
CVE-2016-0361 can potentially expose sensitive information related to administrative accounts.
Who is impacted by CVE-2016-0361?
Remote authenticated users on systems using affected versions of IBM General Parallel File System may be impacted by CVE-2016-0361.