From fe3e07b9e738d35142f3a5ca93fd91da657936e6 Mon Sep 17 00:00:00 2001 From: GLSAMaker Date: Wed, 7 Sep 2022 02:52:10 +0000 Subject: [ GLSA 202209-02 ] IBM Spectrum Protect: Multiple Vulnerabilities Bug: https://bugs.gentoo.org/788115 Bug: https://bugs.gentoo.org/829189 Bug: https://bugs.gentoo.org/831509 Signed-off-by: GLSAMaker Signed-off-by: John Helmert III --- glsa-202209-02.xml | 48 ++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 48 insertions(+) create mode 100644 glsa-202209-02.xml (limited to 'glsa-202209-02.xml') diff --git a/glsa-202209-02.xml b/glsa-202209-02.xml new file mode 100644 index 00000000..2c7d2652 --- /dev/null +++ b/glsa-202209-02.xml @@ -0,0 +1,48 @@ + + + + IBM Spectrum Protect: Multiple Vulnerabilities + Multiple vulnerabilities have been discovered in IBM Spectrum Protect, the worst of which could result in arbitrary code execution. + tsm + 2022-09-07 + 2022-09-07 + 788115 + 829189 + 831509 + remote + + + 8.1.13.3 + 8.1.13.3 + + + +

TSM provides the client and the API for IBM Spectrum Protect (formerly known as Tivoli Storage Manager), a backup and archival client/server solution targetting large tape libraries.

+
+ +

Multiple vulnerabilities have been discovered in IBM Spectrum Protect. Please review the CVE identifiers referenced below for details.

+
+ +

Please review the referenced CVE identifiers for details.

+
+ +

There is no known workaround at this time.

+
+ +

All IBM Spectrum Protect users should upgrade to the latest version:

+ + + # emerge --sync + # emerge --ask --oneshot --verbose ">=app-backup/tsm-8.1.13.3" + +
+ + CVE-2021-3711 + CVE-2021-3712 + CVE-2021-4104 + CVE-2021-29672 + CVE-2021-39048 + + ajak + ajak +
\ No newline at end of file -- cgit v1.2.3-65-gdbad