Lucene search

K
ibmIBM6B71E5299C30CC8B6F6A4909DF4AAD8E6260347B9FD2774D1B0BCB521E696872
HistoryAug 17, 2018 - 4:52 p.m.

Security Bulletin: IBM Security Access Manager Appliance is affected by a systemd vulnerability (CVE-2018-1049)

2018-08-1716:52:45
www.ibm.com
11

0.009 Low

EPSS

Percentile

83.1%

Summary

IBM Security Access Manager Appliance has addressed the following vulnerability.

Vulnerability Details

CVEID:CVE-2018-1049
DESCRIPTION: Systemd is vulnerable to a denial of service, caused by a race condition between .mount and .automount units. A remote authenticated attacker could exploit this vulnerability to cause the application to crash.
CVSS Base Score: 6.5
CVSS Temporal Score: See <https://exchange.xforce.ibmcloud.com/vulnerabilities/138105&gt; for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)

Affected Products and Versions

Affected IBM Security Access Manager Appliance

|

Affected Versions

—|—
IBM Security Access Manager | 9.0.3.0-9.0.4.0

Remediation/Fixes

Product

| VRMF |APAR|Remediation
—|—|—|—
IBM Security Access Manager | 9.0 - 9.0.4.0 | IJ07003 | Upgrade to 9.0.5.0:
9.0.5-ISS-ISAM-FP0000

Workarounds and Mitigations

None.