HIGH · 7.6

CVE-2013-0508

Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execute...

Vulnerability Description

Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execute arbitrary code or cause a denial of service via a long line in (1) hrfstable.idx, (2) hrdevice.idx, (3) hrstorage.idx, or (4) lotusmapfile in the SSM Config directory, or (5) .manifest.hive in the main agent directory.

CVSS Score

7.6

HIGH

AV:N/AC:H/Au:N/C:C/I:C/A:C
Confidentiality
COMPLETE
Integrity
COMPLETE
Availability
COMPLETE

Affected Products

VendorProductVersions
IbmTivoli Netcool Application Service Monitors4.0.0
IbmTivoli Netcool System Service Monitors4.0.0

Related Weaknesses (CWE)

References

FAQ

What is CVE-2013-0508?

CVE-2013-0508 is a vulnerability with a CVSS score of 7.6 (HIGH). Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execute...

How severe is CVE-2013-0508?

CVE-2013-0508 has been rated HIGH with a CVSS base score of 7.6/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2013-0508?

Check the references section above for vendor advisories and patch information. Affected products include: Ibm Tivoli Netcool Application Service Monitors, Ibm Tivoli Netcool System Service Monitors.