5
CVE-2010-3756
- EPSS 1.4%
- Veröffentlicht 05.10.2010 22:00:06
- Zuletzt bearbeitet 16.06.2026 23:23:27
- Erkennungen
The _CalcHashValueWithLength function in FastBackServer.exe in the Server in IBM Tivoli Storage Manager (TSM) FastBack 5.5.0.0 through 5.5.6.0 and 6.1.0.0 through 6.1.0.1 does not properly validate an unspecified length value, which allows remote attackers to cause a denial of service (daemon crash) by sending data over TCP. NOTE: this might overlap CVE-2010-3060.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.0
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.1
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.2
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.2.0
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.3.0
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.4.0
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.5.0
Ibm ≫ Tivoli Storage Manager Fastback Version 5.5.6.0
Ibm ≫ Tivoli Storage Manager Fastback Version 6.1.0.0
Ibm ≫ Tivoli Storage Manager Fastback Version 6.1.0.1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.4% | 0.697 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://www-01.ibm.com/support/docview.wss?uid=swg1IC69883
http://www.ibm.com/support/docview.wss?uid=swg21443820
http://www.securityfocus.com/archive/1/514070/100/0/threaded
http://zerodayinitiative.com/advisories/ZDI-10-186/