First published: Wed Nov 04 2009(Updated: )
Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7 and 5.4 before 5.4.2 allows remote attackers to execute arbitrary code via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager | =5.3.6.3 | |
IBM Tivoli Storage Manager | =5.3.6.1 | |
IBM Tivoli Storage Manager | =5.3.6.6 | |
IBM Tivoli Storage Manager | =5.3.2.4 | |
IBM Tivoli Storage Manager | =5.3.4 | |
IBM Tivoli Storage Manager | =5.5.0 | |
IBM Tivoli Storage Manager | =5.3.6.2 | |
IBM Tivoli Storage Manager | =5.3.1 | |
IBM Tivoli Storage Manager | =5.3.3 | |
IBM Tivoli Storage Manager | =5.3.0 | |
IBM Tivoli Storage Manager | =5.4.1 | |
IBM Tivoli Storage Manager | =5.4.0 | |
IBM Tivoli Storage Manager | =5.3.2 | |
IBM Tivoli Storage Manager | =5.3.6.4 | |
IBM Tivoli Storage Manager | =5.3.5.1 | |
IBM Tivoli Storage Manager | =5.3 | |
IBM Tivoli Storage Manager | =5.2.5.3 | |
IBM Tivoli Storage Manager | =5.3.6.5 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2009-3854 is considered a critical vulnerability due to the potential for remote code execution.
To mitigate CVE-2009-3854, update IBM Tivoli Storage Manager to version 5.3.6.7 or later, or 5.4.2 or later.
CVE-2009-3854 affects IBM Tivoli Storage Manager versions 5.3.6.1 through 5.3.6.6 and 5.4.0 through 5.4.1.
CVE-2009-3854 is classified as a buffer overflow vulnerability in the IBM Tivoli Storage Manager.
Yes, CVE-2009-3854 can be exploited by remote attackers to execute arbitrary code on the system.