CVE-2010-3058
published 2010-08-20CVE-2010-3058: The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote…
PriorityP336high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
2.46%
82.6th percentile
The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
| ibm | tivoli_storage_manager_fastback | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3frf-gw23-35mh: Unspecified vulnerability in IBM Tivoli Storage Manager (TSM) FastBack 5
ghsa_unreviewed·2022-05-17·CVSS 7.5
CVE-2010-3761 [HIGH] CWE-94 GHSA-3frf-gw23-35mh: Unspecified vulnerability in IBM Tivoli Storage Manager (TSM) FastBack 5
Unspecified vulnerability in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-700. NOTE: this might overlap CVE-2010-3058 or CVE-2010-3059.
GHSA
GHSA-pgv7-cg4f-x6hg: The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5
ghsa_unreviewed·2022-05-17
CVE-2010-3058 [HIGH] GHSA-pgv7-cg4f-x6hg: The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5
The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.
GHSA
GHSA-mcm4-fv4w-h3q4: FastBackMount
ghsa_unreviewed·2022-05-14·CVSS 7.5
CVE-2010-3759 [HIGH] CWE-94 GHSA-mcm4-fv4w-h3q4: FastBackMount
FastBackMount.exe in the Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 writes a certain value to a memory location specified by a UDP packet field, which allows remote attackers to execute arbitrary code via multiple requests. NOTE: this might overlap CVE-2010-3058.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://secunia.com/advisories/41044http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883http://www-01.ibm.com/support/docview.wss?uid=swg21443820http://www.securityfocus.com/bid/42549http://secunia.com/advisories/41044http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883http://www-01.ibm.com/support/docview.wss?uid=swg21443820http://www.securityfocus.com/bid/42549
2010-08-20
Published