CVE-2006-6309: High severity ibm tivoli storage manager vulnerability
Multiple array index errors in IBM Tivoli Storage Manager (TSM) before 5.2.9 and 5.3.x before 5.3.4 allow remote attackers to read arbitrary memory locations and cause a denial of service (crash) via a large index value in unspecified messages, a different issue than CVE-2006-5855.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-6309?
CVE-2006-6309 has a critical severity level due to its potential to cause denial of service and read arbitrary memory locations.
How do I fix CVE-2006-6309?
To fix CVE-2006-6309, upgrade IBM Tivoli Storage Manager to version 5.2.10 or later, or 5.3.4 or later.
What versions of IBM Tivoli Storage Manager are affected by CVE-2006-6309?
CVE-2006-6309 affects IBM Tivoli Storage Manager versions 5.2.9 and earlier, as well as versions 5.3.0 through 5.3.3.
What type of attacks can exploit CVE-2006-6309?
CVE-2006-6309 can be exploited by remote attackers sending unspecified messages with large index values.
What are the potential consequences of CVE-2006-6309?
The potential consequences of CVE-2006-6309 include unauthorized access to sensitive data and unavailability of storage services due to crashes.