Boletines de Vulnerabilidades

IBM Security Bulletin: Unauthorized access to ReFS files restored by TSM (CVE-2013-5371)


Información sobre el sistema

   
Software afectado IBM

Descripción

Files restored to ReFS from a TSM backup can have incorrect permissions, allowing an unauthorized user to access and modify the files CVE(s): CVE-2013-5371 Affected product(s) and affected version(s): Tivoli Storage Manager Windows client version 6.3.1 (the first release and fix pack where ReFS is supported) Tivoli Storage Manager Windows client version 6.4.0 Note: TSM 7.1 is unaffected Refer to the following reference URLs for remediation and additional vulnerability details:

More info:

https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_unauthorized_access_to_refs_files_restored_by_tsm_cve_2013_5371?lang=en_us

Identificadores estándar

Propiedad Valor
CVE CVE-2013-5371 ,CVE-2013-6329 ,CVE-2013-1500 ,CVE-2014-0844 ,CVE-2014-0845 and CVE-2014-0846.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-03-04

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT