CVE-2010-3757
05.10.2010, 22:00
Format string vulnerability in the _Eventlog function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via format string specifiers located after a | (pipe) character in a string. NOTE: this might overlap CVE-2010-3059.
Vendor | Product | Version |
---|---|---|
ibm | tivoli_storage_manager_fastback | 5.5.0 |
ibm | tivoli_storage_manager_fastback | 5.5.1 |
ibm | tivoli_storage_manager_fastback | 5.5.2 |
ibm | tivoli_storage_manager_fastback | 5.5.2.0 |
ibm | tivoli_storage_manager_fastback | 5.5.3.0 |
ibm | tivoli_storage_manager_fastback | 5.5.4.0 |
ibm | tivoli_storage_manager_fastback | 5.5.5.0 |
ibm | tivoli_storage_manager_fastback | 5.5.6.0 |
ibm | tivoli_storage_manager_fastback | 6.1.0.0 |
ibm | tivoli_storage_manager_fastback | 6.1.0.1 |
𝑥
= Vulnerable software versions
References