PT-2017-6852 · Teradata · Td Express+1

Published

2017-05-23

·

Updated

2017-06-06

·

CVE-2015-5401

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Teradata Gateway versions prior to 15.00.03.02-1 Teradata Gateway versions 15.10.x prior to 15.10.00.01-1 TD Express versions prior to 15.00.02.08 Sles10 TD Express versions prior to 15.00.02.08 Sles11
Description The issue allows remote attackers to cause a denial of service, resulting in a database crash. This can be achieved by sending a malformed CONFIG REQUEST message.
Recommendations For Teradata Gateway versions prior to 15.00.03.02-1, update to version 15.00.03.02-1 or later. For Teradata Gateway versions 15.10.x prior to 15.10.00.01-1, update to version 15.10.00.01-1 or later. For TD Express versions prior to 15.00.02.08 Sles10, update to version 15.00.02.08 Sles10 or later. For TD Express versions prior to 15.00.02.08 Sles11, update to version 15.00.02.08 Sles11 or later.

Exploit

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2015-5401

Affected Products

Td Express
Teradata Gateway