Lucene search

K
cveIbmCVE-2014-4813
HistoryFeb 13, 2015 - 2:59 a.m.

CVE-2014-4813

2015-02-1302:59:03
CWE-362
ibm
web.nvd.nist.gov
28
ibm
tivoli
storage manager
race condition
root privilege
cve-2014-4813
unix
linux
nvd

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%

Race condition in the client in IBM Tivoli Storage Manager (TSM) 5.4.0.0 through 5.4.3.6, 5.5.0.0 through 5.5.4.3, 6.1.0.0 through 6.1.5.6, 6.2 before 6.2.5.4, 6.3 before 6.3.2.3, 6.4 before 6.4.2.1, and 7.1 before 7.1.1 on UNIX and Linux allows local users to obtain root privileges via unspecified vectors.

Affected configurations

Nvd
Node
ibmtivoli_storage_managerMatch5.4.1
OR
ibmtivoli_storage_managerMatch5.4.2
OR
ibmtivoli_storage_managerMatch5.4.2.2
OR
ibmtivoli_storage_managerMatch5.4.2.3
OR
ibmtivoli_storage_managerMatch5.4.2.4
OR
ibmtivoli_storage_managerMatch5.4.3.0
OR
ibmtivoli_storage_managerMatch5.4.3.2
OR
ibmtivoli_storage_managerMatch5.4.3.3
OR
ibmtivoli_storage_managerMatch5.4.3.4
OR
ibmtivoli_storage_managerMatch5.4.3.6
OR
ibmtivoli_storage_managerMatch5.5.0
OR
ibmtivoli_storage_managerMatch5.5.1
OR
ibmtivoli_storage_managerMatch5.5.2
OR
ibmtivoli_storage_managerMatch5.5.3
OR
ibmtivoli_storage_managerMatch5.5.4
OR
ibmtivoli_storage_managerMatch5.5.4.1
OR
ibmtivoli_storage_managerMatch5.5.4.2
OR
ibmtivoli_storage_managerMatch5.5.4.3
OR
ibmtivoli_storage_managerMatch6.1.0
OR
ibmtivoli_storage_managerMatch6.1.1
OR
ibmtivoli_storage_managerMatch6.1.2
OR
ibmtivoli_storage_managerMatch6.1.3
OR
ibmtivoli_storage_managerMatch6.1.4
OR
ibmtivoli_storage_managerMatch6.1.5
OR
ibmtivoli_storage_managerMatch6.1.5.4
OR
ibmtivoli_storage_managerMatch6.1.5.5
OR
ibmtivoli_storage_managerMatch6.1.5.6
OR
ibmtivoli_storage_managerMatch6.2.0.0
OR
ibmtivoli_storage_managerMatch6.2.1
OR
ibmtivoli_storage_managerMatch6.2.2
OR
ibmtivoli_storage_managerMatch6.2.3
OR
ibmtivoli_storage_managerMatch6.2.4
OR
ibmtivoli_storage_managerMatch6.2.4.4
OR
ibmtivoli_storage_managerMatch6.2.4.7
OR
ibmtivoli_storage_managerMatch6.3.0.0
OR
ibmtivoli_storage_managerMatch6.3.0.1
OR
ibmtivoli_storage_managerMatch6.3.0.17
OR
ibmtivoli_storage_managerMatch6.3.1
OR
ibmtivoli_storage_managerMatch6.3.2
OR
ibmtivoli_storage_managerMatch6.3.2.1
OR
ibmtivoli_storage_managerMatch6.4.0.0
OR
ibmtivoli_storage_managerMatch6.4.2
OR
ibmtivoli_storage_managerMatch7.1.0
AND
linuxlinux_kernel
VendorProductVersionCPE
ibmtivoli_storage_manager5.4.1cpe:2.3:a:ibm:tivoli_storage_manager:5.4.1:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.2cpe:2.3:a:ibm:tivoli_storage_manager:5.4.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.2.2cpe:2.3:a:ibm:tivoli_storage_manager:5.4.2.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.2.3cpe:2.3:a:ibm:tivoli_storage_manager:5.4.2.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.2.4cpe:2.3:a:ibm:tivoli_storage_manager:5.4.2.4:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.3.0cpe:2.3:a:ibm:tivoli_storage_manager:5.4.3.0:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.3.2cpe:2.3:a:ibm:tivoli_storage_manager:5.4.3.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.3.3cpe:2.3:a:ibm:tivoli_storage_manager:5.4.3.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.3.4cpe:2.3:a:ibm:tivoli_storage_manager:5.4.3.4:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.4.3.6cpe:2.3:a:ibm:tivoli_storage_manager:5.4.3.6:*:*:*:*:*:*:*
Rows per page:
1-10 of 441

CVSS2

6.9

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:C/I:C/A:C

AI Score

6.1

Confidence

Low

EPSS

0

Percentile

5.1%

Related for CVE-2014-4813