CVE-2010-3755
The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to cause a denial of service (NULL pointer dereference and…
Does this matter?
Lower severity and a low EPSS score (2.17%). Track it; it rarely justifies an emergency change on its own.
Description
The _DAS_ReadBlockReply function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via data in a TCP packet. NOTE: this might overlap CVE-2010-3060.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 2.17% probability · 81th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- ibm/tivoli storage manager fastback
- Source
- cve@mitre.org
References
- http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883Vendor Advisory
- http://www.ibm.com/support/docview.wss?uid=swg21443820Vendor Advisory
- http://www.securityfocus.com/archive/1/514063/100/0/threaded
- http://zerodayinitiative.com/advisories/ZDI-10-187/
- http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883Vendor Advisory
- http://www.ibm.com/support/docview.wss?uid=swg21443820Vendor Advisory
- http://www.securityfocus.com/archive/1/514063/100/0/threaded
- http://zerodayinitiative.com/advisories/ZDI-10-187/
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.