CVE-2024-55898: IBM i privilege escalation
IBM i 7.2, 7.3, 7.4, and 7.5 could allow a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege.
Other sources
IBM i could allow a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege.
— IBM
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2024-55898?
CVE-2024-55898 is considered a high severity vulnerability due to the potential for elevated privileges.
How do I fix CVE-2024-55898?
To address CVE-2024-55898, users should apply the latest security patches provided by IBM for affected versions of the IBM i operating system.
What versions of IBM i are affected by CVE-2024-55898?
CVE-2024-55898 affects IBM i versions 7.2, 7.3, 7.4, and 7.5.
Who could exploit CVE-2024-55898?
CVE-2024-55898 could be exploited by a user who has the capability to compile or restore programs on IBM i.
What impact does CVE-2024-55898 have on system security?
CVE-2024-55898 can lead to unauthorized execution of user-controlled code with administrator privileges, compromising system security.