Heap-based Buffer Overflow in IBM Tivoli Storage Manager
CVE-2008-4801

Currently unrated

Key Information:

Vendor
IBM
Vendor
CVE Published:
31 October 2008

Summary

A heap-based buffer overflow vulnerability exists in the Data Protection for SQL CAD service (dsmcat.exe) within IBM's Tivoli Storage Manager. This flaw allows remote attackers to exploit the system by sending a crafted large amount of data to a TCP port, potentially leading to arbitrary code execution. This affects multiple versions of the Backup-Archive client, thus emphasizing the need for immediate patching to safeguard against possible exploitation.

References

EPSS Score

33% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.