CVE-2021-29740

HIGH

IBM Spectrum Scale < 5.0.5.7 - Format String Vulnerability

Title source: rule
STIX 2.1

Description

IBM Spectrum Scale 5.0.0 through 5.0.5.6 and 5.1.0 through 5.1.0.3 system core component is affected by a format string security vulnerability. An attacker could execute arbitrary code in the context of process memory, potentially escalating their system privileges and taking control over the entire system with root access. IBM X-Force ID: 201474.

Scores

CVSS v3 7.8
EPSS 0.0007
EPSS Percentile 21.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-134
Status published
Products (1)
ibm/spectrum_scale 5.0.0.0 - 5.0.5.7
Published Jun 01, 2021
Tracked Since Feb 18, 2026