CVE-2024-41781 Information
Nov 23, 2024
cve
Description
IBM PowerVM Platform KeyStore (IBM PowerVM Hypervisor FW950.00 through FW950.90 FW1030.00 through FW1030.60 FW1050.00 through FW1050.20 and FW1060.00 through FW1060.10 functionality can be compromised if an attacker gains service access to the HMC. An attacker that gains service access to the HMC can locate and through a series of service procedures decrypt data contained in the Platform KeyStore.
CVSS Vector
CVSS:3.1/AV:A/AC:H/PR:H/UI:R/S:C/C:H/I:N/A:N
Reference
https://www.ibm.com/support/pages/node/7172698
Attack Complexity
HIGH
Privileges Required
HIGH
User Interaction Required
HIGH
Scope
REQUIRED
Confidentiality Impact
CHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.1
Share on: