Vulnerability Description
Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO products, allow remote attackers to execute arbitrary code via a crafted message.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Tibco | Adapter Files Z Os | <= 4.4.1 |
| Tibco | Hawk | <= 4.8.0 |
| Tibco | Iprocess Engine | 10.3.0 |
| Tibco | Rendezvous | <= 8.10 |
| Tibco | Rendezvous Datasecurity | <= 2.1.6 |
| Tibco | Rendezvous Tx | <= 2.04 |
| Tibco | Runtime Agent | <= 5.5.4 |
| Tibco | Substantiation Es | <= 2.4.0 |
Related Weaknesses (CWE)
References
- http://secunia.com/advisories/29774Vendor Advisory
- http://www.osvdb.org/44269
- http://www.securityfocus.com/bid/28717
- http://www.securitytracker.com/id?1019826
- http://www.tibco.com/resources/mk/rendezvous_security_advisory_20080409.txt
- http://www.vupen.com/english/advisories/2008/1189/references
- http://www.vupen.com/english/advisories/2008/1190/references
- https://exchange.xforce.ibmcloud.com/vulnerabilities/41760
- http://secunia.com/advisories/29774Vendor Advisory
- http://www.osvdb.org/44269
- http://www.securityfocus.com/bid/28717
- http://www.securitytracker.com/id?1019826
- http://www.tibco.com/resources/mk/rendezvous_security_advisory_20080409.txt
- http://www.vupen.com/english/advisories/2008/1189/references
- http://www.vupen.com/english/advisories/2008/1190/references
FAQ
What is CVE-2008-1703?
CVE-2008-1703 is a vulnerability with a CVSS score of 9.3 (HIGH). Multiple buffer overflows in TIBCO Software Rendezvous before 8.1.0, as used in multiple TIBCO products, allow remote attackers to execute arbitrary code via a crafted message.
How severe is CVE-2008-1703?
CVE-2008-1703 has been rated HIGH with a CVSS base score of 9.3/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2008-1703?
Check the references section above for vendor advisories and patch information. Affected products include: Tibco Adapter Files Z Os, Tibco Hawk, Tibco Iprocess Engine, Tibco Rendezvous, Tibco Rendezvous Datasecurity.