PT-2013-2393 · Ibm · Ibm Tivoli Netcool System Service Monitors (Ssm)/Application Service Monitors
Publicado
2013-06-05
·
Atualizado
2017-08-29
·
CVE-2013-0508
CVSS v2.0
7.6
Alta
| Vetor | AV:N/AC:H/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) versions 4.0.0 through 4.0.0 FP13
IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) version 4.0.1 through 4.0.1 FP0
Description
The issue allows context-dependent attackers to execute arbitrary code or cause a denial of service via a long line in specific files, including
hrfstable.idx, hrdevice.idx, hrstorage.idx, lotusmapfile in the SSM Config directory, or .manifest.hive in the main agent directory.Recommendations
For IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) versions 4.0.0 through 4.0.0 FP13, update to FP14 or later.
For IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) version 4.0.1 through 4.0.1 FP0, update to FP1 or later.
Correção
Buffer Overflow
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Ibm Tivoli Netcool System Service Monitors (Ssm)/Application Service Monitors