CVE-2020-4956
15.02.2021, 15:15
IBM Spectrum Protect Operations Center 7.1 and 8.1 is vulnerable to a denial of service, caused by a RPC that allows certain cache values to be set and dumped to a file. By setting a grossly large cache value and dumping that cached value to a file multiple times, a remote attacker could exploit this vulnerability to cause the consumption of all memory resources. IBM X-Force ID: 192156.Enginsight
Vendor | Product | Version |
---|---|---|
ibm | spectrum_protect_operations_center | 7.1.0.000 ≤ 𝑥 < 7.1.13.000 |
ibm | spectrum_protect_operations_center | 8.1.0.000 ≤ 𝑥 < 8.1.10.200 |
𝑥
= Vulnerable software versions