PT-2013-2393 · Ibm · Ibm Tivoli Netcool System Service Monitors (Ssm)/Application Service Monitors

Published

2013-06-05

·

Updated

2017-08-29

·

CVE-2013-0508

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) versions 4.0.0 through 4.0.0 FP13 IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) version 4.0.1 through 4.0.1 FP0
Description The issue allows context-dependent attackers to execute arbitrary code or cause a denial of service via a long line in specific files, including hrfstable.idx, hrdevice.idx, hrstorage.idx, lotusmapfile in the SSM Config directory, or .manifest.hive in the main agent directory.
Recommendations For IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) versions 4.0.0 through 4.0.0 FP13, update to FP14 or later. For IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) version 4.0.1 through 4.0.1 FP0, update to FP1 or later.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-0508

Affected Products

Ibm Tivoli Netcool System Service Monitors (Ssm)/Application Service Monitors