Tuesday, November 22, 2016

IBM Security Bulletin: IBM Tivoli Storage Manager FastBack for Bare Machine Recovery Stack-Based Buffer Overflow Elevation of Privilege Vulnerability (CVE-2016-6091)

The IBM Tivoli Storage Manager FastBack mount process is vulnerable to a stack-based buffer overflow. A local or remote attacker could overflow a buffer and execute arbitrary code on the system with root privileges or cause the application to crash.

CVE(s): CVE-2016-6091

Affected product(s) and affected version(s):

IBM Tivoli Storage Manager FastBack for Bare Machine Recovery 6.1.0 through 6.1.11.0.
IBM Tivoli Storage Manager FastBack for Bare Machine Recovery 5.5 all levels.

Refer to the following reference URLs for remediation and additional vulnerability details:
Source Bulletin: http://ift.tt/2gg8GAw
X-Force Database: http://ift.tt/2ggc12G



from IBM Product Security Incident Response Team http://ift.tt/2fn3hs2

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.