CVE-2016-5985

The IBM Tivoli Storage Manager (IBM Spectrum Protect) AIX client is vulnerable to a buffer overflow when Journal-Based Backup is enabled. A local attacker could overflow a buffer and execute arbitrary code on the system or cause a system crash.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
ibmCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 21%
VendorProductVersion
ibmtivoli_storage_manager
𝑥
≤ 7.1.6.2
ibmtivoli_storage_manager
7.1.0.0
ibmtivoli_storage_manager
𝑥
≤ 6.4.3.3
ibmtivoli_storage_manager
6.4.0.0
ibmtivoli_storage_manager
𝑥
≤ 6.3.2.5
ibmtivoli_storage_manager
6.3.0.0
ibmtivoli_storage_manager
𝑥
≤ 6.1
ibmtivoli_storage_manager
𝑥
≤ 6.2
ibmtivoli_storage_manager
𝑥
≤ 5.5
𝑥
= Vulnerable software versions