First published: Wed Sep 26 2018(Updated: )
IBM Spectrum Protect 7.1 and 8.1 could allow a local user to corrupt or delete highly sensitive information that would cause a denial of service to other users. IBM X-Force ID: 142696.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager | >=7.1.8.0<=7.1.8.2 | |
IBM Tivoli Storage Manager | >=8.1.2<=8.1.4 | |
IBM Tivoli Storage Manager for Space Management | ||
IBM Tivoli Storage Manager for Space Management | >=7.1.8.0<=7.1.8.2 | |
IBM Tivoli Storage Manager for Space Management | >=8.1.2.0<=8.1.4.1 | |
IBM Tivoli Storage Manager for Virtual Environments | >=7.1.8.0<=7.1.8.2 | |
IBM Tivoli Storage Manager for Virtual Environments | >=8.1.2.0<=8.1.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2018-1550.
The severity of CVE-2018-1550 is medium (CVSS score 5.5).
A local user can exploit CVE-2018-1550 to corrupt or delete highly sensitive information, causing a denial of service to other users.
IBM Spectrum Protect versions 7.1 to 7.1.8.2 and 8.1.2 to 8.1.4 are affected by CVE-2018-1550.
To fix the vulnerability CVE-2018-1550, update IBM Spectrum Protect to a version that is not affected by the vulnerability.