Vulnerability Description
The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Ibm | Tivoli Storage Manager Fastback | 5.5.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/41044Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883
- http://www-01.ibm.com/support/docview.wss?uid=swg21443820
- http://www.securityfocus.com/bid/42549
- http://secunia.com/advisories/41044Vendor Advisory
- http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883
- http://www-01.ibm.com/support/docview.wss?uid=swg21443820
- http://www.securityfocus.com/bid/42549
FAQ
What is CVE-2010-3058?
CVE-2010-3058 is a vulnerability with a CVSS score of 7.5 (HIGH). The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execu...
How severe is CVE-2010-3058?
CVE-2010-3058 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2010-3058?
Check the references section above for vendor advisories and patch information. Affected products include: Ibm Tivoli Storage Manager Fastback.