CVE-2018-7110

Severity CVSS v4.0:
Pending analysis
Type:
CWE-362 Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Publication date:
17/10/2018
Last modified:
03/12/2018

Description

A remote unauthorized disclosure of information vulnerability was identified in HPE Service Governance Framework (SGF) version 4.2, 4.3. A race condition under high load in SGF exists where SGF transferred different parameter to the enabler.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:hpe:service_governance_framework:4.2:*:*:*:*:*:*:*
cpe:2.3:a:hpe:service_governance_framework:4.3:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:linux:7.0:*:*:*:*:*:*:*