First published: Tue Nov 03 2020(Updated: )
IBM PowerHA 7.2 could allow a local attacker to obtain sensitive information from temporary directories after a discovery failure occurs. IBM X-Force ID: 189969.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM HACMP | <=All | |
IBM HACMP | =7.2 | |
IBM AIX |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-4832 is classified as a medium severity vulnerability due to the risk of sensitive information disclosure.
To mitigate CVE-2020-4832, ensure that your IBM PowerHA 7.2 is updated to the latest security patches provided by IBM.
CVE-2020-4832 affects all versions of IBM PowerHA 7.2, allowing local attackers access to sensitive data in temporary directories.
CVE-2020-4832 allows local attackers to obtain sensitive information from temporary directories following a discovery failure.
A recommended workaround for CVE-2020-4832 is to limit access to temporary directories and secure local user permissions.