CVE-2011-1223: Buffer Overflow
Buffer overflow in the Alternate Data Stream (aka ADS or named stream) functionality in the backup-archive client in IBM Tivoli Storage Manager (TSM) before 5.4.3.4, 5.5.x before 5.5.3, 6.x before 6.1.4, and 6.2.x before 6.2.2 on Windows allows local users to gain privileges via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1223?
CVE-2011-1223 is considered a moderate severity vulnerability due to its potential for local privilege escalation.
How do I fix CVE-2011-1223?
To fix CVE-2011-1223, you should upgrade IBM Tivoli Storage Manager to version 5.4.3.4 or later, or the versions listed in the official IBM patches.
What versions of IBM Tivoli Storage Manager are affected by CVE-2011-1223?
CVE-2011-1223 affects IBM Tivoli Storage Manager versions prior to 5.4.3.4, 5.5.x before 5.5.3, and 6.x before 6.1.4.
Can remote users exploit CVE-2011-1223?
No, CVE-2011-1223 can only be exploited by local users, as it requires local access to the affected system.
What kind of attacks can be executed using CVE-2011-1223?
Exploiting CVE-2011-1223 may allow local users to gain elevated privileges, potentially leading to unauthorized access and control over the system.