Vulnerability Bulletins

IBM Security Bulletin: Tivoli Storage Manager for Virtual Environments: Data Protection for VMware and Tivoli Storage FlashCopy Manager for VMware affected by privilege escalation vulnerability (CVE-2

   
Affected software IBM
 
The IBM Data Protection Extension in the VMware GUI component of IBM Tivoli Storage Manager for Virtual Environments: Data Protection for VMware (IBM Spectrum Protect for Virtual Environments) and IBM Tivoli Storage FlashCopy Manager for VMware (IBM Spectrum Protect Snapshot) are subject to a privilege escalation vulnerability that can result in an authenticated user being able to restore a virtual machine even though the user does not have the required privilege for this operation. CVE(s):

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_tivoli_storage_manager_for_virtual_environments_data_protection_for_vmware_and_tivoli_storage_flashcopy_manager_for_vmware_affected_by_privilege_escalation_vulnerability_cve_