PT-2021-22307 · Ibm · Ibm Spectrum Scale

Published

2021-11-16

·

Updated

2021-11-17

·

CVE-2021-38882

CVSS v3.1

4.4

Medium

VectorAV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions IBM Spectrum Scale versions 5.1.0 through 5.1.1.1
Description The issue allows a privileged admin to destroy filesystem audit logging records before expiration time.
Recommendations For IBM Spectrum Scale versions 5.1.0 through 5.1.1.1, consider restricting access to audit logging functions to prevent unauthorized destruction of records until a fix is available.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-38882

Affected Products

Ibm Spectrum Scale