CVE-2020-4492: Medium severity IBM Spectrum Scale vulnerability
IBM Spectrum Scale could allow a local attacker to cause a denial of service crashing the kernel by sending a subset of ioctls on the device with invalid arguments.
Other sources
IBM Spectrum Scale V5.0.0.0 through V5.0.4.3 and V4.2.0.0 through V4.2.3.21 could allow a local attacker to cause a denial of service crashing the kernel by sending a subset of ioctls on the device with invalid arguments. IBM X-Force ID: 181992.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2020-4492.
What is the severity of CVE-2020-4492?
The severity of CVE-2020-4492 is medium.
How can a local attacker exploit CVE-2020-4492?
A local attacker can exploit CVE-2020-4492 by sending a subset of ioctls on the device with invalid arguments, causing a denial of service that crashes the kernel.
Which versions of IBM Spectrum Scale are affected by CVE-2020-4492?
IBM Spectrum Scale V5.0.0.0 through V5.0.4.3 and V4.2.0.0 through V4.2.3.21 are affected by CVE-2020-4492.
How can I fix the vulnerability CVE-2020-4492?
To fix CVE-2020-4492, it is recommended to apply the latest updates or patches provided by IBM.