mirror of
https://github.com/CVEProject/cvelist.git
synced 2025-08-04 08:44:25 +00:00
109 lines
3.2 KiB
JSON
109 lines
3.2 KiB
JSON
{
|
|
"CVE_data_meta" : {
|
|
"ASSIGNER" : "psirt@us.ibm.com",
|
|
"DATE_PUBLIC" : "2018-06-11T00:00:00",
|
|
"ID" : "CVE-2018-1431",
|
|
"STATE" : "PUBLIC"
|
|
},
|
|
"affects" : {
|
|
"vendor" : {
|
|
"vendor_data" : [
|
|
{
|
|
"product" : {
|
|
"product_data" : [
|
|
{
|
|
"product_name" : "Spectrum Scale",
|
|
"version" : {
|
|
"version_data" : [
|
|
{
|
|
"version_value" : "4.1.1"
|
|
},
|
|
{
|
|
"version_value" : "4.2.0"
|
|
},
|
|
{
|
|
"version_value" : "4.2.1"
|
|
},
|
|
{
|
|
"version_value" : "4.2.2"
|
|
},
|
|
{
|
|
"version_value" : "4.2.3"
|
|
},
|
|
{
|
|
"version_value" : "5.0.0"
|
|
}
|
|
]
|
|
}
|
|
}
|
|
]
|
|
},
|
|
"vendor_name" : "IBM"
|
|
}
|
|
]
|
|
}
|
|
},
|
|
"data_format" : "MITRE",
|
|
"data_type" : "CVE",
|
|
"data_version" : "4.0",
|
|
"description" : {
|
|
"description_data" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "A vulnerability in GSKit affects IBM Spectrum Scale 4.1.1, 4.2.0, 4.2.1, 4.2.3, and 5.0.0 that could allow a local attacker to obtain control of the Spectrum Scale daemon and to access and modify files in the Spectrum Scale file system, and possibly to obtain administrator privileges on the node. IBM X-Force ID: 139240."
|
|
}
|
|
]
|
|
},
|
|
"impact" : {
|
|
"cvssv3" : {
|
|
"BM" : {
|
|
"A" : "H",
|
|
"AC" : "H",
|
|
"AV" : "L",
|
|
"C" : "H",
|
|
"I" : "H",
|
|
"PR" : "N",
|
|
"S" : "U",
|
|
"SCORE" : "7.400",
|
|
"UI" : "N"
|
|
},
|
|
"TM" : {
|
|
"E" : "U",
|
|
"RC" : "C",
|
|
"RL" : "O"
|
|
}
|
|
}
|
|
},
|
|
"problemtype" : {
|
|
"problemtype_data" : [
|
|
{
|
|
"description" : [
|
|
{
|
|
"lang" : "eng",
|
|
"value" : "Gain Privileges"
|
|
}
|
|
]
|
|
}
|
|
]
|
|
},
|
|
"references" : {
|
|
"reference_data" : [
|
|
{
|
|
"name" : "http://www.ibm.com/support/docview.wss?uid=ssg1S1012049",
|
|
"refsource" : "CONFIRM",
|
|
"url" : "http://www.ibm.com/support/docview.wss?uid=ssg1S1012049"
|
|
},
|
|
{
|
|
"name" : "105546",
|
|
"refsource" : "BID",
|
|
"url" : "http://www.securityfocus.com/bid/105546"
|
|
},
|
|
{
|
|
"name" : "ibm-spectrum-cve20181431-priv-escalation(139240)",
|
|
"refsource" : "XF",
|
|
"url" : "https://exchange.xforce.ibmcloud.com/vulnerabilities/139240"
|
|
}
|
|
]
|
|
}
|
|
}
|