First published: Fri Jan 06 2017(Updated: )
An issue was discovered in EMC ScaleIO versions before 2.0.1.1. A low-privileged local attacker may cause a denial-of-service by generating a kernel panic in the SCINI driver using IOCTL calls which may render the ScaleIO Data Client (SDC) server unavailable until the next reboot.
Credit: security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
Dell EMC ScaleIO | <=2.0.1.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-9868 is classified as a low-severity vulnerability because it requires local access to exploit.
To fix CVE-2016-9868, upgrade EMC ScaleIO to version 2.0.1.1 or later.
CVE-2016-9868 is associated with a denial-of-service attack that can cause a kernel panic.
CVE-2016-9868 can be exploited by a low-privileged local attacker.
CVE-2016-9868 affects EMC ScaleIO versions prior to 2.0.1.1.