PT-2021-22307 · Ibm · Ibm Spectrum Scale
Published
2021-11-16
·
Updated
2021-11-17
·
CVE-2021-38882
CVSS v3.1
4.4
Medium
| Vector | AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
IBM Spectrum Scale versions 5.1.0 through 5.1.1.1
Description
The issue allows a privileged admin to destroy filesystem audit logging records before expiration time.
Recommendations
For IBM Spectrum Scale versions 5.1.0 through 5.1.1.1, consider restricting access to audit logging functions to prevent unauthorized destruction of records until a fix is available.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Ibm Spectrum Scale