CVE-2016-2984

CWE-2643 documents3 sources
Severity
7.0HIGH
EPSS
0.0%
top 88.07%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedNov 25
Latest updateMay 17

Description

IBM Spectrum Scale 4.1.1.x before 4.1.1.8 and 4.2.x before 4.2.0.4 and General Parallel File System (GPFS) 3.5.x before 3.5.0.32 and 4.1.x before 4.1.1.8 allow local users to gain privileges via crafted command-line parameters to a /usr/lpp/mmfs/bin/ setuid program.

CVSS vector

CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages2 packages

NVDibm/spectrum_scale13 versions+12

🔴Vulnerability Details

2
GHSA
GHSA-f573-78g9-q6g7: IBM Spectrum Scale 42022-05-17
CVEList
CVE-2016-2984: IBM Spectrum Scale 42016-11-25