Tracker / CVE-2013-6335
CVE-2013-6335
Low 3.3
The Backup-Archive client in IBM Tivoli Storage Manager (TSM) for Space Management 5.x and 6.x before 6.2.5.3, 6.3.x before 6.3.2, 6.4.x before 6.4.2, and 7.1.x before 7.1.0.3 on Linux and AIX, and 5.x and 6.x before 6.1.5.6 on Solaris and HP-UX, does not preserve file permissions across backup and restore operations, which allows local users to bypass intended access restrictions via standard filesystem operations.
Affected products and versions
| ibm | tivoli_storage_manager · 5.1 → 6.1.5.6 |
|---|---|
| ibm | tivoli_storage_manager · 5.1 → 6.2.5.3 |
| ibm | tivoli_storage_manager · 6.3.0 → 6.3.2 |
| ibm | tivoli_storage_manager · 6.4.0 → 6.4.2 |
| ibm | tivoli_storage_manager · 7.1.0.0 → 7.1.0.3 |
Analysis
This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.