CVE-2015-1898: Buffer Overflow
Published Apr 15, 2015
·Updated
Stack-based buffer overflow in the FastBackMount process in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.11.1 allows local users to gain privileges via unspecified vectors, a different vulnerability than CVE-2015-1897.
Affected Software
5 affected components
IBM Tivoli Storage Manager FastBack=6.1.0.0
IBM Tivoli Storage Manager FastBack=6.1.1.0
IBM Tivoli Storage Manager FastBack=6.1.10.0
IBM Tivoli Storage Manager FastBack=6.1.10.1
IBM Tivoli Storage Manager FastBack=6.1.11.0
Remediation
Patch Available
Event History
Apr 15, 2015
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-1898?
CVE-2015-1898 has been rated with high severity due to the potential for privilege escalation.
2
How do I fix CVE-2015-1898?
To fix CVE-2015-1898, upgrade IBM Tivoli Storage Manager FastBack to version 6.1.11.1 or later.
3
What software versions are affected by CVE-2015-1898?
CVE-2015-1898 affects IBM Tivoli Storage Manager FastBack versions 6.1.0.0 to 6.1.11.0.
4
Who can exploit CVE-2015-1898?
CVE-2015-1898 can be exploited by local users to gain elevated privileges.
5
What type of vulnerability is CVE-2015-1898?
CVE-2015-1898 is categorized as a stack-based buffer overflow vulnerability.