APP: IBM Tivoli Storage Manager FastBack Mount Service Code Execution (TCP)

This signature detects attempts to exploit a known vulnerability against IBM Tivoli Storage Manager FastBack Mount Service. A successful attack can lead to arbitrary code execution.

Extended Description

The Mount service in IBM Tivoli Storage Manager (TSM) FastBack 5.x.x before 5.5.7, and 6.1.0.0, establishes an open UDP port, which might allow remote attackers to overwrite memory locations and execute arbitrary code, or cause a denial of service (application hang), via unspecified vectors.

Affected Products

Ibm tivoli_storage_manager_fastback

References

BugTraq: 42549

CVE: CVE-2010-3058

Short Name
APP:IBM:TIVOLI-FASTBACK-RCE
Severity
Major
Recommended
False
Recommended Action
Drop
Category
APP
Keywords
(TCP) CVE-2010-3058 Code Execution FastBack IBM Manager Mount Service Storage Tivoli bid:42549
Release Date
11/10/2014
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
Port
tcp/30005
False Positive
Unknown
Vendors

Ibm

CVSS Score

7.5

Found a potential security threat?