PT-2021-14031 · Ibm · Ibm Spectrum Protect Client

Published

2021-04-26

·

Updated

2021-04-28

·

CVE-2021-20546

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: IBM Spectrum Protect Client versions 8.1.0.0 through 8.1.11.0
Description: The issue is caused by improper bounds checking, leading to a stack-based buffer overflow. A local attacker could overflow a buffer, causing the application to crash.
Recommendations: For versions 8.1.0.0 through 8.1.11.0, update to a version that includes the fix for the buffer overflow issue. As a temporary workaround, consider restricting access to the application to minimize the risk of exploitation.

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-20546

Affected Products

Ibm Spectrum Protect Client