PT-2025-7697 · Ibm · Ibm I

Published

2025-02-23

·

Updated

2025-03-01

·

CVE-2024-55898

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions IBM i versions 7.2 through 7.5
Description The issue allows a user with the capability to compile or restore a program to gain elevated privileges due to an unqualified library call. A malicious actor could cause user-controlled code to run with administrator privilege.
Recommendations For IBM i versions 7.2 through 7.5, update to a version that includes a fix for this issue to prevent users from gaining elevated privileges.

Fix

LPE

Uncontrolled Search Path Element

Weakness Enumeration

Related Identifiers

BDU:2025-06819
CVE-2024-55898

Affected Products

Ibm I