漏洞信息详情
IBM Spectrum Protect 缓冲区错误漏洞
漏洞简介
IBM Spectrum Protect(前称Tivoli Storage Manager)是美国IBM公司的一套数据保护平台。该平台为企业提供单一控制和管理点,并支持对所有规模的虚拟、物理和云环境进行备份和恢复。
IBM Spectrum Protect client 存在缓冲区错误漏洞,该漏洞源于处理当前语言环境设置时不正确的边界。本地攻击者可能会溢出缓冲区并以提升的特权在系统上执行任意代码,或者导致应用程序崩溃。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://www.ibm.com/support/pages/node/6445497
参考网址
来源:XF
链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/199479
来源:CONFIRM
链接:https://www.ibm.com/support/pages/node/6445497
来源:nvd.nist.gov
链接:https://nvd.nist.gov/vuln/detail/CVE-2021-29672
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-stack-based-buffer-overflow-vulnerabilities-in-ibm-spectrum-protect-back-up-archive-client-and-ibm-spectrum-protect-for-space-management-cve-2021-29672-cve-2021-20546/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/IBM-Spectrum-Protect-Client-two-vulnerabilities-35155
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-stack-based-buffer-overflow-vulnerabilities-in-ibm-spectrum-protect-back-up-archive-client-and-ibm-spectrum-protect-for-space-management-cve-2021-29672-cve-2021-20546-3/
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-stack-based-buffer-overflow-vulnerabilities-in-ibm-spectrum-protect-back-up-archive-client-and-ibm-spectrum-protect-for-space-management-cve-2021-29672-cve-2021-20546-2/
受影响实体
暂无
补丁
- IBM Spectrum Protect 缓冲区错误漏洞的修复措施<!--2021-4-23-->
还没有评论,来说两句吧...