Vulnerability Bulletins

IBM Security Bulletin: Password Disclosure via application tracing in IBM Tivoli Storage Manager HSM for Windows (CVE-2016-5918)

   
Affected software IBM
 
IBM Tivoli Storage Manager HSM for Windows (IBM Spectrum Protect HSM for Windows) may display the encrypted Tivoli Storage Manager password when application tracing is enabled.CVE(s): CVE-2016-5918Affected product(s) and affected version(s):The following levels of IBM Tivoli Storage Manager HSM for Windows (IBM Spectrum Protect HSM for Windows) are affected: 7.1.0.0 through 7.1.4.1 6.4.0.0 through 6.4.3.0 6.3 and below – all levelsRefer to the following reference URLs for remediation and

More info:

https://www.ibm.com/blogs/psirt/ibm-security-bulletin-password-disclosure-via-application-tracing-in-ibm-tivoli-storage-manager-hsm-for-windows-cve-2016-5918/