Vulnerability CVE-2010-3758


Published: 2010-10-05   Modified: 2012-02-13

Description:
Multiple stack-based buffer overflows in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allow remote attackers to execute arbitrary code via vectors involving the (1) AGI_SendToLog (aka _SendToLog) function; the (2) group, (3) workgroup, or (4) domain name field to the USER_S_AddADGroup function; the (5) user_path variable to the FXCLI_checkIndexDBLocation function; or (6) the _AGI_S_ActivateLTScriptReply (aka ActivateLTScriptReply) function. NOTE: this might overlap CVE-2010-3059.

See advisories in our WLB2 database:
Topic
Author
Date
High
IBM TSM FastBack Server _SendToLog Remote Code Execution VulnerabilityBM TSM FastBack Server _SendToLog Remote Code Execution Vu
ZDI
07.10.2010

Type:

CWE-94

(Improper Control of Generation of Code ('Code Injection'))

CVSS2 => (AV:N/AC:L/Au:N/C:C/I:C/A:C)

CVSS Base Score
Impact Subscore
Exploitability Subscore
10/10
10/10
10/10
Exploit range
Attack complexity
Authentication
Remote
Low
No required
Confidentiality impact
Integrity impact
Availability impact
Complete
Complete
Complete
Affected software
IBM -> Tivoli storage manager fastback 

 References:
http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883
http://www.ibm.com/support/docview.wss?uid=swg21443820
http://www.securityfocus.com/archive/1/514059/100/0/threaded
http://www.securityfocus.com/archive/1/514067/100/0/threaded
http://www.securityfocus.com/archive/1/514072/100/0/threaded
http://www.securityfocus.com/archive/1/514078/100/0/threaded
http://zerodayinitiative.com/advisories/ZDI-10-180/
http://zerodayinitiative.com/advisories/ZDI-10-181/
http://zerodayinitiative.com/advisories/ZDI-10-183/
http://zerodayinitiative.com/advisories/ZDI-10-184/

Copyright 2024, cxsecurity.com

 

Back to Top