CVE-2008-0247
IBM Tivoli Storage Manager Express Backup Server Heap Overflow Vulnerability
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
Heap-based buffer overflow in the Express Backup Server service (dsmsvc.exe) in IBM Tivoli Storage Manager (TSM) Express 5.3 before 5.3.7.3 allows remote attackers to execute arbitrary code via a packet with a large length value.
Un desbordamiento de búfer en la región heap de la memoria en el servicio Express Backup Server (archivo dsmsvc.exe) en IBM Tivoli Storage Manager (TSM) Express versiones 5.3 anteriores a 5.3.7.3, permite a atacantes remotos ejecutar código arbitrario por medio de un paquete con un valor de longitud largo.
This vulnerability allows attackers to execute arbitrary code on vulnerable installations of IBM Tivoli Storage Manager Express. Authentication is not required to exploit this vulnerability.
The specific flaw resides in the TSM Express Backup Server service, dsmsvc.exe, which listens by default on TCP port 1500. The process trusts a user-supplied length value. By supplying a large number, an attacker can overflow a static heap buffer leading to arbitrary code execution in the context of the SYSTEM user.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2008-01-11 CVE Reserved
- 2008-01-12 CVE Published
- 2024-08-07 CVE Updated
- 2024-10-08 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
- CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
CAPEC
References (8)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/archive/1/486270/100/0/threaded | Mailing List | |
http://www.securitytracker.com/id?1019182 | Vdb Entry | |
http://www.zerodayinitiative.com/advisories/ZDI-08-001.html | X_refsource_misc | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/39604 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://secunia.com/advisories/28440 | 2018-10-15 | |
http://www-1.ibm.com/support/docview.wss?uid=swg21291536 | 2018-10-15 | |
http://www.securityfocus.com/bid/27235 | 2018-10-15 |
URL | Date | SRC |
---|---|---|
http://www.vupen.com/english/advisories/2008/0106 | 2018-10-15 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Ibm Search vendor "Ibm" | Tivoli Storage Manager Express Search vendor "Ibm" for product "Tivoli Storage Manager Express" | <= 5.3 Search vendor "Ibm" for product "Tivoli Storage Manager Express" and version " <= 5.3" | - |
Affected
|