CVE-2018-1431: High severity ibm general parallel file system storage server vulnerability
A vulnerability in GSKit affects IBM Spectrum Scale 4.1.1, 4.2.0, 4.2.1, 4.2.3, and 5.0.0 that could allow a local attacker to obtain control of the Spectrum Scale daemon and to access and modify files in the Spectrum Scale file system, and possibly to obtain administrator privileges on the node. IBM X-Force ID: 139240.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-1431?
CVE-2018-1431 is considered a high severity vulnerability that can allow local attackers to control the Spectrum Scale daemon.
How do I fix CVE-2018-1431?
To fix CVE-2018-1431, upgrade to a version of IBM Spectrum Scale that is not affected, such as those later than 5.0.0.2.
What are the affected versions of IBM Spectrum Scale for CVE-2018-1431?
The affected versions for CVE-2018-1431 include IBM Spectrum Scale versions 4.1.1, 4.2.0, 4.2.1, 4.2.3, and 5.0.0.
Can CVE-2018-1431 allow access to sensitive files?
Yes, CVE-2018-1431 can permit an attacker to access and modify files within the Spectrum Scale file system.
What type of attacker is targeted by CVE-2018-1431?
CVE-2018-1431 specifically targets local attackers who have access to the affected node.