First published: Fri Aug 20 2010(Updated: )
The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager FastBack | =5.5.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.1 | |
IBM Tivoli Storage Manager FastBack | =5.5.2 | |
IBM Tivoli Storage Manager FastBack | =5.5.2.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.3.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.4.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.5.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.6.0 | |
IBM Tivoli Storage Manager FastBack | =6.1.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3058 is classified as having a high severity due to its potential for remote code execution and denial of service.
To fix CVE-2010-3058, upgrade IBM Tivoli Storage Manager FastBack to version 5.5.7 or 6.1.0.0 or later.
CVE-2010-3058 affects IBM Tivoli Storage Manager FastBack versions 5.5.0 through 5.5.6 and 6.1.0.0.
Yes, CVE-2010-3058 can potentially allow attackers to execute arbitrary code, leading to data breaches.
Systems running vulnerable versions of IBM Tivoli Storage Manager FastBack are at risk for CVE-2010-3058.