Buffer Overflow Vulnerability in IBM Aspera Applications
CVE-2020-4434
Key Information:
- Vendor
IBM
- Status
- Vendor
- CVE Published:
- 10 June 2020
What is CVE-2020-4434?
Certain IBM Aspera applications are susceptible to a buffer overflow vulnerability, which can be exploited when the product configuration and valid authentication are compromised. An attacker possessing detailed knowledge of the system may leverage this vulnerability to execute arbitrary code or disrupt services through a denial-of-service (DoS) attack via the HTTP fallback service. Organizations using affected IBM Aspera applications should assess their systems and apply necessary mitigations to prevent potential exploitation.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Aspera Application Platform On Demand 3.7.4
Aspera Faspex On Demand 3.7.4
Aspera High-Speed Transfer Endpoint 3.9.3
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved