Lucene search

K
ibmIBM8315D940C0C248A2D5F81586335E93FC30795CCAD3EC3CF408DA8745196DB184
HistorySep 23, 2021 - 1:31 a.m.

Security Bulletin: Vulnerability in kernel affects Power Hardware Management Console (β€ͺCVE-2016-3134‬‬)

2021-09-2301:31:39
www.ibm.com
35

0.002 Low

EPSS

Percentile

53.2%

Summary

Power Hardware Management Console is affected by security vulnerabilities in the Linux Kernel. Power Hardware Management Console has addressed the applicable CVE.

Vulnerability Details

CVEID: CVE-2016-3134**
DESCRIPTION:** Linux Kernel could allow a remote attacker to execute arbitrary code on the system, caused by an out-of-bounds write in the IPT_SO_SET_REPLACE ioctl within netfilter code for iptables support. An attacker could exploit this vulnerability to corrupt heap memory and execute arbitrary code on the system.
CVSS Base Score: 7.3
CVSS Temporal Score: See https://exchange.xforce.ibmcloud.com/vulnerabilities/111418 for the current score
CVSS Environmental Score*: Undefined
CVSS Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)

Affected Products and Versions

Power HMC V8.8.6.0

Remediation/Fixes

The following fixes are available on IBM Fix Central at: <http://www-933.ibm.com/support/fixcentral/&gt;

Product

|

VRMF

|

APAR

|

Remediation/Fix

β€”|β€”|β€”|β€”

Power HMC

|

V8.8.6.0

|

MB04060

|

MH01674