PT-2024-5318 · Ibm · Ibm I
Zoltan Panczel
·
Published
2024-05-18
·
Updated
2025-07-03
·
CVE-2024-31879
CVSS v2.0
7.8
High
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:C |
Name of the Vulnerable Software and Affected Versions
IBM i versions 7.2 through 7.4
Description
The issue is related to flaws in the deserialization mechanism of the IBM i operating system. Exploitation of this issue could allow a remote attacker to execute arbitrary code, leading to a denial of service of network ports on the system. This is caused by the deserialization of untrusted data.
Recommendations
For IBM i versions 7.2 through 7.4, upgrade the affected component as soon as possible to prevent remote code execution and network disruption due to unsafe data deserialization. As a temporary workaround, consider restricting access to network ports to minimize the risk of exploitation.
Fix
DoS
Deserialization of Untrusted Data
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm I