IBM Tivoli Storage Manager FastBack Stack Buffer Overflow Vulnerabilities
17 Sep. 2015
Summary
Stack-based buffer overflow in the server in IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12.1 allows remote attackers to execute arbitrary code via a crafted packet
Credit:
The information has been provided by Lola Montez working with HP's Zero Day Initiative.
Vulnerable Systems:
* IBM Tivoli Storage Manager FastBack 6.1 before 6.1.12.1
Immune Systems:
* IBM Tivoli Storage Manager FastBack after 6.1.12.1
IBM Tivoli Storage Manager FastBack is prone to a stack-based buffer-overflow vulnerability because the application fails to perform adequate boundary checks on user-supplied input. Attackers can exploit this issue to execute arbitrary code with the system privileges. Failed exploits will result in denial-of-service conditions.