Lucene search

K
ibmIBM65106796412DEC0389BAE053FEA84467BE1ED9C4AD20921446D5C54B9B059C88
HistoryJan 10, 2022 - 10:29 a.m.

Security Bulletin: Vulnerability in Linux Kernel affects IBM Spectrum Copy Data Management (CVE-2021-29650)

2022-01-1010:29:57
www.ibm.com
63
linux kernel
ibm spectrum copy data management
vulnerability
denial of service
cve-2021-29650
memory barrier
netfilter subsystem
crash

EPSS

0

Percentile

14.2%

Summary

A denial of service vulnerability in the Linux Kernel may affect IBM Spectrum Copy Data Management

Vulnerability Details

CVEID:CVE-2021-29650
**DESCRIPTION:**Linux Kernel is vulnerable to a denial of service, caused by the lack of a full memory barrier upon the assignment of a new table value in the netfilter subsystem. By sending a specially-crafted request, a local attacker could exploit this vulnerability to cause the system to crash.
CVSS Base score: 6.2
CVSS Temporal Score: See: https://exchange.xforce.ibmcloud.com/vulnerabilities/199201 for the current score.
CVSS Vector: (CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)

Affected Products and Versions

Affected Product(s) Version(s)
IBM Spectrum Copy Data Management 2.2.13 and below

Remediation/Fixes

IBM Spectrum Copy Data Management Affected Versions|Fixing Level|Platform|**Link to Fix and Instructions
**
—|—|—|—
2.2.13 and below| 2.2.14| Linux| <https://www.ibm.com/support/pages/node/6507419&gt;

Workarounds and Mitigations

None