CVE-2009-1522: High severity ibm tivoli storage manager client vulnerability
Published May 5, 2009
·Updated
The IBM Tivoli Storage Manager (TSM) client 5.5.0.0 through 5.5.1.17 on AIX and Windows, when SSL is used, allows remote attackers to conduct unspecified man-in-the-middle attacks and read arbitrary files via unknown vectors.
Affected Software
6 affected components
Ibm Tivoli Storage Manager Client=5.5.0.0
Ibm Tivoli Storage Manager Client=5.5.0.91
Ibm Tivoli Storage Manager Client=5.5.1
Ibm Tivoli Storage Manager Client=5.5.1.17
IBM AIX
Microsoft Windows
Remediation
Patch Available
Patch Available
Event History
May 5, 2009
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Data Sourced
05:30 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2009-1522?
CVE-2009-1522 has been rated as a high severity vulnerability due to its potential to allow man-in-the-middle attacks.
2
How do I fix CVE-2009-1522?
To fix CVE-2009-1522, it is recommended to upgrade the IBM Tivoli Storage Manager client to a version higher than 5.5.1.17.
3
What types of attacks can CVE-2009-1522 enable?
CVE-2009-1522 can enable remote attackers to conduct man-in-the-middle attacks.
4
Which versions of IBM Tivoli Storage Manager are affected by CVE-2009-1522?
CVE-2009-1522 affects IBM Tivoli Storage Manager client versions 5.5.0.0 through 5.5.1.17.
5
On which platforms is CVE-2009-1522 vulnerable?
CVE-2009-1522 is vulnerable on AIX and Microsoft Windows platforms.