Vulnerability Name: | CVE-2018-1993 (CCN-154440) | ||||||||||||
Assigned: | 2017-12-13 | ||||||||||||
Published: | 2019-01-03 | ||||||||||||
Updated: | 2019-10-09 | ||||||||||||
Summary: | IBM Spectrum Scale (GPFS) 4.1.1, 4.2.0, 4.2.1, 4.2.2, 4.2.3, and 5.0.0 where the use of Local Read Only Cache (LROC) is enabled may caused read operation on a file to return data from a different file. IBM X-Force ID: 154440. | ||||||||||||
CVSS v3 Severity: | 3.3 Low (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N) 2.9 Low (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C)
3.5 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 2.1 Low (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:N/A:N)
| ||||||||||||
Vulnerability Type: | CWE-200 | ||||||||||||
Vulnerability Consequences: | Obtain Information | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2018-1993 Source: CCN Type: IBM Security Bulletin 0794443 (Elastic Storage Server) IBM Spectrum Scale for IBM Elastic Storage Server is affected by the use of Local Read Only Cache (LROC) which may result in directory corruption and undetected data corruption in regular files. Source: BID Type: Third Party Advisory, VDB Entry 106485 Source: XF Type: UNKNOWN ibm-gpfs-cve20181993-info-disc(154440) Source: XF Type: VDB Entry, Vendor Advisory ibm-gpfs-cve20181993-info-disc(154440) Source: CCN Type: IBM Security Bulletin 793719 (Spectrum Scale) A vulnerability has been identified in IBM Spectrum Scale where the use of Local Read Only Cache (LROC) may result in directory corruption and undetected data corruption in regular files. Source: CONFIRM Type: Patch, Vendor Advisory https://www.ibm.com/support/docview.wss?uid=ibm10793719 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
BACK |