Heap-based buffer overflow in kde.dll in IBM Tivoli Monitoring Express 6.1.0 before Fix Pack 2, as used in Tivoli Universal Agent, Windows OS Monitoring agent, and Enterprise Portal Server, allows remote attackers to execute arbitrary code by sending a long string to a certain TCP port.
References
Configurations
History
21 Nov 2024, 00:30
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/24938 - | |
References | () http://securityreason.com/securityalert/2597 - | |
References | () http://www-1.ibm.com/support/docview.wss?uid=swg24012341 - Patch | |
References | () http://www.securityfocus.com/archive/1/466216/100/0/threaded - | |
References | () http://www.securityfocus.com/bid/23558 - Patch | |
References | () http://www.securitytracker.com/id?1017933 - | |
References | () http://www.vupen.com/english/advisories/2007/1456 - | |
References | () http://www.zerodayinitiative.com/advisories/ZDI-07-018.html - Vendor Advisory | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/33746 - |
Information
Published : 2007-04-22 19:19
Updated : 2024-11-21 00:30
NVD link : CVE-2007-2137
Mitre link : CVE-2007-2137
CVE.ORG link : CVE-2007-2137
JSON object : View
Products Affected
ibm
- tivoli_monitoring_express
CWE