Vulnerabilities > IBM > Elastic Storage Server > Medium

DATE CVE VULNERABILITY TITLE RISK
2020-10-20 CVE-2020-4756 Improper Resource Shutdown or Release vulnerability in IBM Elastic Storage Server and Spectrum Scale
IBM Spectrum Scale V4.2.0.0 through V4.2.3.23 and V5.0.0.0 through V5.0.5.2 as well as IBM Elastic Storage System 6.0.0 through 6.0.1.0 could allow a local attacker to invoke a subset of ioctls on the device with invalid arguments that could crash the keneral and cause a denial of service.
local
low complexity
ibm CWE-404
5.5
2020-08-24 CVE-2020-4383 Unspecified vulnerability in IBM Elastic Storage Server
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment while configuring some of the network services.
network
low complexity
ibm
6.5
2020-08-24 CVE-2020-4382 Unspecified vulnerability in IBM Elastic Storage Server
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.5 could allow an authenticated user to cause a denial of service during deployment or upgrade pertaining to xcat services.
local
low complexity
ibm
5.5
2020-08-19 CVE-2020-4381 Unspecified vulnerability in IBM Elastic Storage Server
IBM Spectrum Scale for IBM Elastic Storage Server 5.3.0 through 5.3.6 could allow an authenticated user to cause a denial of service during deployment or upgrade if GUI specific services are enabled.
network
low complexity
ibm
6.5
2017-06-21 CVE-2017-1304 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in IBM Elastic Storage Server
IBM has identified a vulnerability with IBM Spectrum Scale/GPFS utilized on the Elastic Storage Server (ESS)/GPFS Storage Server (GSS) during testing of an unsupported configuration, where users applications are running on an active ESS I/O server node and utilize direct I/O to perform a read or a write to a Spectrum Scale file.
local
high complexity
ibm CWE-119
6.2