Wednesday, February 1, 2017

IBM Security Bulletin: Vulnerability in Linux Kernel affects ProtecTIER: Dirty COW vulnerability (CVE-2016-5195)

A race condition was found in the way the Linux kernel’s memory subsystem handled the copy-on-write (COW) breakage of private read-only memory mappings. An attacker could exploit this vulnerability to gain write access to read-only memory mappings and elevated privileges on the system.

CVE(s): CVE-2016-5195

Affected product(s) and affected version(s):

These products affected by this vulnerability:

· ProtecTIER Enterprise Edition (PID 5639-PTA) – TS7650G
· ProtecTIER Appliance Edition (PID 5639-PTB) – TS7650AP1
· ProtecTIER Entry Edition (PID 5639-PTC) – TS7610 / TS7620
· ProtecTIER Gateway for System Z (PID 5639-FPA)

The code versions impacted are 1.2.x, 2.4.x, 2.5.x, 3.1.x, 3.2.x, 3.3.x and 3.4.x

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2jXq93D
X-Force Database: http://ift.tt/2gQ8nw9



from IBM Product Security Incident Response Team http://ift.tt/2jXimmI

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.