First published: Fri Nov 22 2019(Updated: )
IBM Spectrum Protect Backup-Archive Client 7.1 and 8.1 may be vulnerable to a denial of service attack due to a timing issue between client and server TCP/IP communications. IBM X-Force ID: 162477.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Spectrum Protect Backup-Archive Client | >=7.1.0.0<=7.1.8.6 | |
IBM Spectrum Protect Backup-Archive Client | >=8.1.0.0<=8.1.8.0 | |
<=8.1.0.0-8.1.8.0 7.1.0.0-7.1.8.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for this issue is CVE-2019-4406.
The severity of CVE-2019-4406 is medium (4.4).
IBM Spectrum Protect Backup-Archive Client versions 7.1.0.0 to 7.1.8.6 and versions 8.1.0.0 to 8.1.8.0 are affected by CVE-2019-4406.
CVE-2019-4406 can be exploited through a denial of service attack caused by a timing issue between client and server TCP/IP communications.
You can find more information about CVE-2019-4406 on IBM's official support page and the IBM X-Force ID: 162477 vulnerability report.