Ibm Elastic Storage Server vulnerabilities

7 known vulnerabilities affecting ibm/elastic_storage_server.

Total CVEs
7
CISA KEV
0
Public exploits
0
Exploited in wild
0
Severity breakdown
HIGH2MEDIUM5

Vulnerabilities

Page 1 of 1
CVE-2020-5015HIGHCVSS 7.5≥ 5.3.0, ≤ 5.3.6.2v5.3.0+3 more2021-03-24
CVE-2020-5015 [HIGH] CVE-2020-5015: IBM Elastic Storage System 6.0.0 through 6.0.1.2 and IBM Elastic Storage Server 5.3.0 through 5.3.6. IBM Elastic Storage System 6.0.0 through 6.0.1.2 and IBM Elastic Storage Server 5.3.0 through 5.3.6.2 could allow a remote attacker to cause a denial of service by sending malformed UDP requests. IBM X-Force ID: 193486.
cvelistv5nvd
CVE-2020-4756MEDIUMCVSS 5.5≥ 6.0.0.0, ≤ 6.0.1.0v6.0.0+1 more2020-10-20
CVE-2020-4756 [MEDIUM] CWE-404 CVE-2020-4756: IBM Spectrum Scale V4.2.0.0 through V4.2.3.23 and V5.0.0.0 through V5.0.5.2 as well as IBM Elastic S IBM Spectrum Scale V4.2.0.0 through V4.2.3.23 and V5.0.0.0 through V5.0.5.2 as well as IBM Elastic Storage System 6.0.0 through 6.0.1.0 could allow a local attacker to invoke a subset of ioctls on the device with invalid arguments that could crash the keneral and cause a denial of service. IBM X-Force ID: 188599.
cvelistv5nvd
CVE-2020-4383MEDIUMCVSS 6.5≥ 5.3.0, ≤ 5.3.5v5.3.0+1 more2020-08-24
CVE-2020-4383 [MEDIUM] CVE-2020-4383: IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated u IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment while configuring some of the network services. IBM X-Force ID: 179165.
cvelistv5nvd
CVE-2020-4382MEDIUMCVSS 5.5≥ 5.3.0, ≤ 5.3.5v5.3.0+1 more2020-08-24
CVE-2020-4382 [MEDIUM] CVE-2020-4382: IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated u IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment or upgrade pertaining to xcat services. IBM X-Force ID: 179163.
cvelistv5nvd
CVE-2020-4381MEDIUMCVSS 6.5≥ 5.3.0, ≤ 5.3.6v5.3.0+1 more2020-08-19
CVE-2020-4381 [MEDIUM] CVE-2020-4381: IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.6 could allow an authenticated u IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.6 could allow an authenticated user to cause a denial of service during deployment or upgrade if GUI specific services are enabled. IBM X-Force ID: 179162.
cvelistv5nvd
CVE-2017-1304MEDIUMCVSS 6.2v2.0.0v2.5.0+18 more2017-06-21
CVE-2017-1304 [MEDIUM] CWE-119 CVE-2017-1304: IBM has identified a vulnerability with IBM Spectrum Scale/GPFS utilized on the Elastic Storage Serv IBM has identified a vulnerability with IBM Spectrum Scale/GPFS utilized on the Elastic Storage Server (ESS)/GPFS Storage Server (GSS) during testing of an unsupported configuration, where users applications are running on an active ESS I/O server node and utilize direct I/O to perform a read or a write to a Spectrum Scale file. This vulnerability may
cvelistv5nvd
CVE-2016-0392HIGHCVSS 8.4v2.5.0v2.5.1+18 more2016-06-19
CVE-2016-0392 [HIGH] CWE-284 CVE-2016-0392: IBM General Parallel File System (GPFS) in GPFS Storage Server 2.0.0 through 2.0.7 and Elastic Stora IBM General Parallel File System (GPFS) in GPFS Storage Server 2.0.0 through 2.0.7 and Elastic Storage Server 2.5.x through 2.5.5, 3.x before 3.5.5, and 4.x before 4.0.3, as distributed in Spectrum Scale RAID, allows local users to gain privileges via a crafted parameter to a setuid program.
nvd