First published: Tue Oct 05 2010(Updated: )
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not properly handle a certain failure to allocate memory, which allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash, and recovery failure) by specifying a large size value within TCP packet data. NOTE: this might overlap CVE-2010-3061.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager FastBack | =6.1.0.0 | |
IBM Tivoli Storage Manager FastBack | =6.1.0.1 | |
IBM Tivoli Storage Manager FastBack | =5.5.3.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.4.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.5.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.2 | |
IBM Tivoli Storage Manager FastBack | =5.5.6.0 | |
IBM Tivoli Storage Manager FastBack | =5.5.1 | |
IBM Tivoli Storage Manager FastBack | =5.5.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3760 is classified as a denial of service vulnerability due to its potential to crash the affected service.
To fix CVE-2010-3760, update the IBM Tivoli Storage Manager FastBack to a patched version that addresses this vulnerability.
CVE-2010-3760 affects IBM Tivoli Storage Manager FastBack versions 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1.
CVE-2010-3760 can be exploited by remote attackers causing a denial of service through a NULL pointer dereference.
While CVE-2010-3760 is an older vulnerability, it remains relevant for organizations still using unpatched versions of the affected software.