First published: Thu May 13 2021(Updated: )
IBM Spectrum Scale 5.1.0.1 could allow a local with access to the GUI pod container to obtain sensitive cryptographic keys that could allow them to elevate their privileges. IBM X-Force ID: 200883.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Scale | =5.1.0.1 | |
<=5.1.0.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID of IBM Spectrum Scale is CVE-2021-29708.
The severity of CVE-2021-29708 is medium with a CVSS score of 6.7.
The affected version of IBM Spectrum Scale is 5.1.0.1.
A local with access to the GUI pod container can exploit this vulnerability to obtain sensitive cryptographic keys and elevate their privileges.
IBM has provided a security patch for IBM Spectrum Scale to address CVE-2021-29708. Please refer to the IBM support page (link provided in the references) for more information.