PT-2021-22359 · Ibm · Ibm Spectrum Protect Client

Published

2021-12-13

·

Updated

2022-09-29

·

CVE-2021-39048

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions IBM Spectrum Protect Client versions 7.1 through 8.1
Description The issue is caused by improper bounds checking, leading to a stack-based buffer overflow. A local attacker could exploit this and cause a denial of service.
Recommendations For versions 7.1 and 8.1, update to a version that includes the fix for the improper bounds checking issue to prevent exploitation. As a temporary workaround, consider restricting access to the vulnerable component to minimize the risk of exploitation.

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2021-39048

Affected Products

Ibm Spectrum Protect Client