Database/Control plane, storage & DevOps

IBM Spectrum Scale mmfsd daemon (RPC request handling): A local attacker floods mmfsd with RPC requests and crashes it
Impact
A local attacker floods mmfsd with RPC requests and crashes it, taking the filesystem away from every workload on that node. Repeatable, so it is a persistent denial of storage rather than a one-shot crash.
Who can reach it
Local account on a node running Spectrum Scale 4.2.x up to 4.2.3.22 or 5.0.x up to 5.0.5. No privileges beyond being able to issue RPCs to the local daemon.
What to do
Upgrade to 4.2.3.23 / 5.0.5.1 or later. There is no configuration workaround that keeps the daemon reachable to legitimate clients while blocking this, so the patch is the fix.
References
Related entries
- AMD CPU core logic - core hang triggered from an unprivileged VM: Specific code executed from an unprivileged VM canCVE-2021-26339 · AMD CPU core logic - core hang triggered from an unprivileged VMMedium
- AMD AGESA Boot Loader (ABL) / ASP stage-2 bootloader: A malicious or compromised User Application or AGESA Boot LoaderCVE-2021-26361 · AMD AGESA Boot Loader (ABL) / ASP stage-2 bootloaderMedium
- Intel 82599 Ethernet Controllers and Adapters - network-on-chip shared-resource isolation: Improper isolation of sharedCVE-2021-33096 · Intel 82599 Ethernet Controllers and Adapters - network-on-chip shared-resource isolationMedium
- Imagination PowerVR GPU driver - cache subsystem information page: The driver's cache-subsystem information pageCVE-2022-20235 · Imagination PowerVR GPU driver - cache subsystem information pageMedium
- Linux swiotlb - info leak with DMA_FROM_DEVICE bounce buffers: The software IO TLB leaks information through bounceCVE-2022-48853 · Linux swiotlb - info leak with DMA_FROM_DEVICE bounce buffersMedium
- Broadcom LSI Storage Authority (LSA) - on-disk credential/key storage on Linux and Windows: The keys LSA usesCVE-2023-4327 · Broadcom LSI Storage Authority (LSA) - on-disk credential/key storage on Linux and WindowsMedium
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.