Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 up to and including 5.5.6.0 and 6.1.0.0 up to and including 6.1.0.1 allows remote malicious users to execute arbitrary code via format string specifiers located after a | (pipe) character in a string. NOTE: this might overlap CVE-2010-3059.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm tivoli storage manager fastback 5.5.5.0 |
||
ibm tivoli storage manager fastback 5.5.6.0 |
||
ibm tivoli storage manager fastback 5.5.3.0 |
||
ibm tivoli storage manager fastback 5.5.4.0 |
||
ibm tivoli storage manager fastback 5.5.0 |
||
ibm tivoli storage manager fastback 6.1.0.0 |
||
ibm tivoli storage manager fastback 6.1.0.1 |
||
ibm tivoli storage manager fastback 5.5.1 |
||
ibm tivoli storage manager fastback 5.5.2 |
||
ibm tivoli storage manager fastback 5.5.2.0 |