ADSM-L

Re: [ADSM-L] Fix for privilege escalation bug

2015-03-10 12:11:40
Subject: Re: [ADSM-L] Fix for privilege escalation bug
From: Bjoern Rackoll <backup.rackoll AT RRZ.UNI-HAMBURG DOT DE>
To: ADSM-L AT VM.MARIST DOT EDU
Date: Tue, 10 Mar 2015 17:09:53 +0100
Hi Thomas!

> We have a considerable number of Linux TSM clients running on 32 bit
> x86 processors and currently using either 6.2.2.0 or 6.2.4.0 client
> code. These client code levels have the privilege escalation bug
> described in the IBM bulletin " Tivoli Storage Manager Stack-based
> Buffer Overflow Elevation of Privilege: CVE-2014-6184". This bug is
> fixed in 6.2.5.4 client code. The README file for the 6.2.5.4 patch
> level has a link for "Linux x86_64 client requirements" but no
> corresponding link for the 32 bit x86 architecture. Does this imply
> that IBM is not providing the bug fix for 32 bit x86 systems?

We also have some 32bit Linux clients and are using the 6.2.5.4 code on
these machine with no issues up to now. In fact, doing so was
recommended to us by IBM support.

Regards,

-- 
Björn Rackoll
Universität Hamburg
Regionales Rechenzentrum
Zentrale Dienste
Schlüterstr. 70
20146 Hamburg
Tel.: +49 (0)40 42838 - 63 11
Fax: +49 (0)40 42838 - 62 70
Mobil: +49 (0)172 427 0301
E-Mail: backup AT mailman.rrz.uni-hamburg DOT de

<Prev in Thread] Current Thread [Next in Thread>