CVE-2024-22315: IBM Fusion improper communication restriction
IBM Fusion and IBM Fusion HCI 2.3.0 through 2.8.2 is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network connection.
Other sources
IBM Storage Fusion is vulnerable to insecure network connection by allowing an attacker who gains access to a Fusion container to establish an external network connection.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-22315?
CVE-2024-22315 is classified as a critical vulnerability due to the risk of unauthorized external network connections.
How do I fix CVE-2024-22315?
To fix CVE-2024-22315, apply the available patches provided by IBM for affected versions of IBM Fusion and IBM Fusion HCI.
Which versions are affected by CVE-2024-22315?
CVE-2024-22315 affects IBM Fusion and IBM Fusion HCI versions from 2.3.0 to 2.8.2.
What systems are vulnerable to CVE-2024-22315?
Systems running IBM Fusion or IBM Fusion HCI between versions 2.3.0 and 2.8.2 are vulnerable to CVE-2024-22315.
Is CVE-2024-22315 exploitable remotely?
Yes, CVE-2024-22315 can be exploited remotely if an attacker gains access to a compromised Fusion container.