CVE-2016-5985: Buffer Overflow
The IBM Tivoli Storage Manager (IBM Spectrum Protect) AIX client is vulnerable to a buffer overflow when Journal-Based Backup is enabled. A local attacker could overflow a buffer and execute arbitrary code on the system or cause a system crash.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2016-5985?
CVE-2016-5985 has a high severity rating due to the potential for local attackers to execute arbitrary code or crash the system.
How do I fix CVE-2016-5985?
To fix CVE-2016-5985, users should upgrade to a version of IBM Tivoli Storage Manager that is not vulnerable, specifically above version 7.1.6.2 or 6.4.3.3.
Which versions of IBM Tivoli Storage Manager are affected by CVE-2016-5985?
CVE-2016-5985 affects IBM Tivoli Storage Manager versions up to 7.1.6.2 and 6.4.3.3.
What type of attack is facilitated by CVE-2016-5985?
CVE-2016-5985 allows for local buffer overflow attacks, enabling execution of arbitrary code.
Is CVE-2016-5985 specific to any operating system?
Yes, CVE-2016-5985 specifically impacts the IBM Tivoli Storage Manager AIX client.