First published: Tue Aug 14 2018(Updated: )
A security vulnerability was identified in 3PAR Service Processor (SP) prior to SP-5.0.0.0-22913(GA). The vulnerability may be exploited locally to allow disclosure of privileged information.
Credit: security-alert@hpe.com
Affected Software | Affected Version | How to fix |
---|---|---|
Hewlett Packard Enterprise 3PAR Service Provider | <sp-5.0.0.0-22913 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-7094 is considered a medium severity vulnerability due to the potential for local exploitation to disclose privileged information.
To fix CVE-2018-7094, you should upgrade to 3PAR Service Processor version SP-5.0.0.0-22913 or later.
CVE-2018-7094 affects users of Hewlett Packard Enterprise 3PAR Service Processor versions prior to SP-5.0.0.0-22913.
CVE-2018-7094 may be exploited locally, allowing attackers with access to the system to disclose privileged information.
Yes, a patch is available by upgrading to a secure version of the 3PAR Service Processor as specified in the advisory.