PT-2018-14232 · Ibm · Ibm Spectrum Protect

Published

2018-11-12

·

Updated

2019-10-09

·

CVE-2018-1786

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Spectrum Protect versions 7.1 and 8.1
Description The issue is related to the dsmc and dsmcad processes in IBM Spectrum Protect, which incorrectly accumulate TCP/IP sockets in a CLOSE WAIT state. This can cause TCP/IP resource leakage and may result in a denial of service.
Recommendations For IBM Spectrum Protect version 7.1, update to a version that includes the fix for the TCP/IP socket accumulation issue. For IBM Spectrum Protect version 8.1, update to a version that includes the fix for the TCP/IP socket accumulation issue.

Fix

Resource Exhaustion

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-1786

Affected Products

Ibm Spectrum Protect