Heap-based Buffer Overflow in IBM Tivoli Storage Manager
CVE-2008-4801
Currently unrated
Key Information:
- Vendor
- IBM
- Vendor
- CVE Published:
- 31 October 2008
Summary
A heap-based buffer overflow vulnerability exists in the Data Protection for SQL CAD service (dsmcat.exe) within IBM's Tivoli Storage Manager. This flaw allows remote attackers to exploit the system by sending a crafted large amount of data to a TCP port, potentially leading to arbitrary code execution. This affects multiple versions of the Backup-Archive client, thus emphasizing the need for immediate patching to safeguard against possible exploitation.
References
EPSS Score
33% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved