IBM Product Security Update Advisory (CVE-2025-33108)
Overview
We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.
Affected Products
CVE-2025-33108
IBM Backup, Recovery and Media Services for i Version: 7.5
IBM Backup, Recovery and Media Services for i Version: 7.4
Resolved Vulnerabilities
Privilege escalation vulnerability due to a library unqualified call in IBM Backup, Recovery and Media Services for i (CVE-2025-33108)
Vulnerability Patches
Vulnerability Patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.
CVE-2025-33108
IBM Backup, Recovery and Media Services for i versions: Apply temporary patches provided by Referenced Sites[2][3]
Referenced Sites
[1] Security Bulletin: IBM Backup, Recovery and Media Services for i is vulnerable to a user gaining elevated privileges due to an unqualified library call [CVE-2025-33108]
https://www.ibm.com/support/pages/node/7236663
[2] SJ05907 – BRM-MAINT INCORROUT Fixes – June 2025
https://www.ibm.com/mysupport/s/fix-information?language=en_US&legacy=SJ05907
[3] SJ05906 – BRM-MAINT INCORROUT Fixes – June 2025
https://www.ibm.com/mysupport/s/fix-information/aDrgJ0000000fO9SAI/fi0135617?language=en_US