Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2008-4828
StatusCandidate
DescriptionMultiple stack-based buffer overflows in dsmagent.exe in the Remote Agent Service in the IBM Tivoli Storage Manager (TSM) client 5.1.0.0 through 5.1.8.2, 5.2.0.0 through 5.2.5.3, 5.3.0.0 through 5.3.6.4, and 5.4.0.0 through 5.4.1.96, and the TSM Express client 5.3.3.0 through 5.3.6.4, allow remote attackers to execute arbitrary code via (1) a request packet that is not properly parsed by an unspecified "generic string handling function" or (2) a crafted NodeName in a dicuGetIdentifyRequest request packet, related to the (a) Web GUI and (b) Java GUI.
PhaseAssigned (31.10.2008)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-4828
ReferencesAIXAPAR : IC59513
 BUGTRAQ : 20090504 Secunia Research: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows
 CONFIRM : http://www-01.ibm.com/support/docview.wss?uid=swg2...
 MISC : http://secunia.com/secunia_research/2008-55/
 OSVDB : 54231
 OSVDB : 54232
 SECUNIA : 32604
 VUPEN : ADV-2009-1235
 XF : ibm-tsm-dsmagent-bo(50327)
SecurityVulns:IBM Tivoli Storage Manager Remote Agent buffer overflow

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server