CVE Vulnerabilities

CVE-2014-6185

Published: Feb 13, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

dsmtca in the client in IBM Tivoli Storage Manager (TSM) 6.3 before 6.3.2.3, 6.4 before 6.4.2.2, and 7.1 before 7.1.1.3 does not properly restrict shared-library loading, which allows local users to gain privileges via a crafted DSO file.

Affected Software

NameVendorStart VersionEnd Version
Tivoli_storage_managerIbm6.3.0 (including)6.3.0 (including)
Tivoli_storage_managerIbm6.3.0.5 (including)6.3.0.5 (including)
Tivoli_storage_managerIbm6.3.0.15 (including)6.3.0.15 (including)
Tivoli_storage_managerIbm6.3.1.2 (including)6.3.1.2 (including)
Tivoli_storage_managerIbm6.3.2.1 (including)6.3.2.1 (including)
Tivoli_storage_managerIbm6.3.2.2 (including)6.3.2.2 (including)
Tivoli_storage_managerIbm6.4.0 (including)6.4.0 (including)
Tivoli_storage_managerIbm6.4.0.1 (including)6.4.0.1 (including)
Tivoli_storage_managerIbm6.4.0.4 (including)6.4.0.4 (including)
Tivoli_storage_managerIbm6.4.0.5 (including)6.4.0.5 (including)
Tivoli_storage_managerIbm6.4.0.7 (including)6.4.0.7 (including)
Tivoli_storage_managerIbm6.4.1 (including)6.4.1 (including)
Tivoli_storage_managerIbm6.4.1.3 (including)6.4.1.3 (including)
Tivoli_storage_managerIbm6.4.1.7 (including)6.4.1.7 (including)
Tivoli_storage_managerIbm6.4.2 (including)6.4.2 (including)
Tivoli_storage_managerIbm6.4.2.1 (including)6.4.2.1 (including)
Tivoli_storage_managerIbm7.1.0 (including)7.1.0 (including)
Tivoli_storage_managerIbm7.1.0.1 (including)7.1.0.1 (including)
Tivoli_storage_managerIbm7.1.0.2 (including)7.1.0.2 (including)
Tivoli_storage_managerIbm7.1.0.3 (including)7.1.0.3 (including)
Tivoli_storage_managerIbm7.1.1 (including)7.1.1 (including)
Tivoli_storage_managerIbm7.1.1.1 (including)7.1.1.1 (including)

References