CVE-2019-4088: High severity IBM Spectrum Protect Operations Center vulnerability
IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents could allow a local attacker to gain elevated privileges on the system, caused by loading a specially crafted library loaded by the dsmqsan module. By setting up such a library, a local attacker could exploit this vulnerability to gain root privileges on the vulnerable system. IBM X-Force ID: 157511.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2019-4088?
CVE-2019-4088 is a vulnerability in IBM Spectrum Protect Servers 7.1 and 8.1 and Storage Agents that allows a local attacker to gain elevated privileges on the system.
How does CVE-2019-4088 occur?
CVE-2019-4088 occurs when a specially crafted library is loaded by the dsmqsan module.
What are the affected software versions for CVE-2019-4088?
The affected software versions for CVE-2019-4088 are IBM Spectrum Protect Servers 7.1 to 7.1.9.200 and 8.1 to 8.1.7.000.
What is the severity of CVE-2019-4088?
The severity of CVE-2019-4088 is high, with a CVSS score of 7.8.
How can CVE-2019-4088 be fixed?
To fix CVE-2019-4088, users should apply the necessary patches or upgrades provided by IBM.