First published: Mon Apr 08 2019(Updated: )
In a certain atypical IBM Spectrum Protect 7.1 and 8.1 configurations, the node password could be displayed in plain text in the IBM Spectrum Protect client trace file. IBM X-Force ID: 151968.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Backup-Archive Client | >=7.1.0.0<=7.1.8.4 | |
IBM Spectrum Protect Backup-Archive Client | >=8.1.0.0<=8.1.6.1 | |
Apple macOS | ||
IBM AIX | ||
Linux Linux kernel | ||
Microsoft Windows | ||
Oracle Solaris | ||
Ibm Spectrum Protect For Virtual Environments | >=7.1.0.0<=7.1.8.4 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.6.1 | |
Ibm Spectrum Protect For Virtual Environments | >=7.1.0.0<=7.1.8.0 | |
Ibm Spectrum Protect For Virtual Environments | >=8.1.0.0<=8.1.6.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2018-1882 is medium with a severity value of 4.7.
IBM Spectrum Protect Backup-Archive Client versions 7.1.0.0 to 7.1.8.4 and versions 8.1.0.0 to 8.1.6.1 are affected.
The node password can be displayed in plain text in the IBM Spectrum Protect client trace file in certain atypical configurations.
No, Apple macOS is not vulnerable to CVE-2018-1882.
Yes, IBM has provided fixes for the affected versions of IBM Spectrum Protect Backup-Archive Client.