CVE-2014-6185: IBM Tivoli Storage Manager

High severity, CVSS 7.2. EPSS: 0.4% chance of exploitation in the next 30 days.

dsmtca in the client in IBM Tivoli Storage Manager (TSM) 6.3 before 6.3.2.3, 6.4 before 6.4.2.2, and 7.1 before 7.1.1.3 does not properly restrict shared-library loading, which allows local users to gain privileges via a crafted DSO file.

Affected products

  • IBM Tivoli Storage Manager: version 6.3.0 only; version 6.3.0.5 only; version 6.3.0.15 only; version 6.3.1.2 only; version 6.3.2.1 only; version 6.3.2.2 only; …

Published 2015-02-13. Last modified 2026-06-17.