Lucene search

K
lenovoLenovoLENOVO:PS500234-NOSID
HistoryApr 17, 2019 - 7:15 p.m.

IMM2 FFDC includes Private Key - US

2019-04-1719:15:34
support.lenovo.com
27

0.002 Low

EPSS

Percentile

52.1%

Lenovo Security Advisory: LEN-25667

Potential Impact: Information disclosure

Severity: Medium

Scope of Impact: Lenovo-specific

CVE Identifier: CVE-2019-6157

Summary Description:

In Lenovo System x, the integrated management module II (IMM2)'s first failure data capture (FFDC) includes the web server’s private key in the generated log file for support.

Mitigation Strategy for Customers (what you should do to protect yourself):

Upgrade to the firmware version (or newer) indicated for your model in the Product Impact section below.

0.002 Low

EPSS

Percentile

52.1%

Related for LENOVO:PS500234-NOSID