CVE-2024-47120: IBM Security Verify Information Queue code execution
IBM Security Verify Information Queue 10.0.5, 10.0.6, 10.0.7, and 10.0.8 could allow a privileged user to escalate their privileges and attack surface on the host due to the containers running with unnecessary privileges.
Other sources
IBM Security Verify Information Queue could allow a privileged user to escalate their privileges and attack surface on the host due to the containers running with unnecessary privileges.
— IBM
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2024-47120?
CVE-2024-47120 has a high severity level due to the potential for privilege escalation and increased attack surface.
How do I fix CVE-2024-47120?
To fix CVE-2024-47120, update IBM Security Verify Information Queue to version 10.0.9 or later, which addresses the privilege escalation issue.
Who is affected by CVE-2024-47120?
CVE-2024-47120 affects users of IBM Security Verify Information Queue versions 10.0.5 to 10.0.8.
What is the attack vector for CVE-2024-47120?
The attack vector for CVE-2024-47120 involves a privileged user exploiting unnecessary privileges granted to containers.
What are the potential risks of CVE-2024-47120?
The potential risks of CVE-2024-47120 include unauthorized privilege escalation and increased vulnerability to attacks on the host.