CVE-2020-4411
Published: May 19, 2020
Modified: Sep 17, 2024
CVSS v3.0
7.1
Description
The Spectrum Scale 4.2.0.0 through 4.2.3.21 and 5.0.0.0 through 5.0.4.3 file system component is affected by a denial of service vulnerability in its kernel module that could allow an attacker to cause a denial of service condition on the affected system. To exploit this vulnerability, a local attacker could invoke a subset of ioctls on the Spectrum Scale device with non-valid arguments. This could allow the attacker to crash the kernel. IBM X-Force ID: 179986.
| Vendor | Product | Versions |
|---|---|---|
IBM | Spectrum Scale | affected 4.2.0.0affected 5.0.0.0affected 5.0.4.3affected 4.2.3.21 |
CVSS v3.0 Details
CVSS v3.0 Vector
CVSS:3.0/AC:L/I:N/C:N/UI:N/PR:N/AV:L/S:C/A:H/RL:O/E:U/RC:C
Attack Complexity
Integrity
Confidentiality
User Interaction
Privileges Required
Attack Vector
Scope
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now