Multiple vulnerabilities in IBM SAN Volume Controller and Storwize Family



Published: 2015-04-21 | Updated: 2023-07-18
Risk High
Patch available YES
Number of vulnerabilities 2
CVE-ID CVE-2014-0227
CVE-2014-0230
CWE-ID CWE-444
CWE-399
Exploitation vector Network
Public exploit N/A
Vulnerable software
Subscribe
IBM Storwize V3500
Hardware solutions / Other hardware appliances

IBM Storwize V3700
Hardware solutions / Other hardware appliances

IBM Storwize V5000
Hardware solutions / Other hardware appliances

IBM Storwize V7000
Hardware solutions / Other hardware appliances

IBM SAN Volume Controller
Hardware solutions / Other hardware appliances

Vendor IBM Corporation

Security Bulletin

This security bulletin contains information about 2 vulnerabilities.

1) Inconsistent interpretation of HTTP requests

EUVDB-ID: #VU64555

Risk: High

CVSSv3.1: 7.9 [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H/E:U/RL:O/RC:C]

CVE-ID: CVE-2014-0227

CWE-ID: CWE-444 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform a HTTP request smuggling attack.

The vulnerability exists due to java/org/apache/coyote/http11/filters/ChunkedInputFilter.java in Apache Tomcat does not properly handle attempts to continue reading data after an error has occurred. A remote attacker can conduct HTTP request smuggling attacks or cause a denial of service (resource consumption) by streaming data with malformed chunked transfer coding.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Storwize V3500: before 7.5.0.2

IBM Storwize V3700: before 7.5.0.2

IBM Storwize V5000: before 7.5.0.2

IBM Storwize V7000: before 7.5.0.2

IBM SAN Volume Controller: before 7.5.0.2

External links

http://www.ibm.com/support/pages/node/690553


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.

2) Resource management error

EUVDB-ID: #VU64581

Risk: Medium

CVSSv3.1: 6.5 [CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C]

CVE-ID: CVE-2014-0230

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.

The vulnerability exists due to Apache Tomcat does not properly handle cases where an HTTP response occurs before finishing the reading of an entire request body. A remote attacker can cause a denial of service (thread consumption) via a series of aborted upload attempts.

Mitigation

Install update from vendor's website.

Vulnerable software versions

IBM Storwize V3500: before 7.5.0.2

IBM Storwize V3700: before 7.5.0.2

IBM Storwize V5000: before 7.5.0.2

IBM Storwize V7000: before 7.5.0.2

IBM SAN Volume Controller: before 7.5.0.2

External links

http://www.ibm.com/support/pages/node/690553


Q & A

Can this vulnerability be exploited remotely?

Yes. This vulnerability can be exploited by a remote non-authenticated attacker via the Internet.

Is there known malware, which exploits this vulnerability?

No. We are not aware of malware exploiting this vulnerability.



###SIDEBAR###