Security Bulletin
Summary
The IBM Spectrum Protect (formerly Tivoli Storage Manager) Client is used as a component of IBM Spectrum Protect Snapshot (formerly Tivoli Storage FlashCopy Manager) for Windows and IBM Spectrum Protect (formerly Tivoli Storage Manager) HSM for Windows. Information about security vulnerabilities affecting the IBM Spectrum Protect Client have been published in security bulletins.
Vulnerability Details
- http://www.ibm.com/support/docview.wss?uid=ibm10871006
- http://www.ibm.com/support/docview.wss?uid=ibm10871016
- http://www.ibm.com/support/docview.wss?uid=ibm10869208
- http://www.ibm.com/support/docview.wss?uid=ibm10869602
- http://www.ibm.com/support/docview.wss?uid=ibm10869950
Affected Products and Versions
Principal Product and Version(s) | Affected Supporting Product and Version |
IBM Spectrum Protect Snapshot (formerly Tivoli Storage FlashCopy Manager) for Windows version 8.1 | IBM Spectrum Protect (formerly Tivoli Storage Manager) Client version 8.1 |
IBM Spectrum Protect Snapshot (formerly Tivoli Storage FlashCopy Manager) for Windows version 4.1 | IBM Spectrum Protect (formerly Tivoli Storage Manager) Client version 7.1. |
Tivoli Storage FlashCopy Manager for Windows version 3.2 and below are EOS. IBM recommends upgrading to a supported level. | Tivoli Storage Manager Client version 6.4 and below are EOS. IBM recommends upgrading to a supported level. |
Note: Within the IBM Spectrum Protect (formerly Tivoli Storage FlashCopy Manager) on Windows product, the IBM Spectrum Protect (formerly Tivoli Storage Manager) Client is also referred to as the FlashCopy Manager VSS Requestor component.
Principal Product and Version(s) | Affected Supporting Product and Version |
IBM Spectrum Protect (formerly Tivoli Storage Manager) HSM for Windows version 8.1 | IBM Spectrum Protect (formerly Tivoli Storage Manager) Client/API version 8.1 |
IBM Spectrum Protect (formerly Tivoli Storage Manager) HSM for Windows version 7.1 | IBM Spectrum Protect (formerly Tivoli Storage Manager) Client/API version 7.1 |
Tivoli Manager HSM for Windows version 6.4 and below are EOS. IBM recommends upgrading to a supported level. |
Tivoli Storage Manager Client/API version 6.4 and below are EOS. IBM recommends upgrading to a supported level. |
Note: Be aware that all HSM for Windows functional components, which includes the IBM Spectrum Protect Client and API, must be at the same Fix Pack level. Within a given Fix Pack level, the interim fix level can differ.
Remediation/Fixes
Workarounds and Mitigations
Get Notified about Future Security Bulletins
References
Change History
2 April 2019 - original version published
*The CVSS Environment Score is customer environment specific and will ultimately impact the Overall CVSS Score. Customers can evaluate the impact of this vulnerability in their environments by accessing the links in the Reference section of this Security Bulletin.
Disclaimer
Review the IBM security bulletin disclaimer and definitions regarding your responsibilities for assessing potential impact of security vulnerabilities to your environment.
Internal Use Only
Advisory 12382 Product Record 116782
Document Location
Worldwide
Was this topic helpful?
Document Information
Modified date:
01 February 2022
UID
ibm10872164