Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:IBM:TIV-SM-CAD

Severity

High

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

IBM Tivoli Storage Manager Client CAD Service Buffer Overflow

Release Date

2010/10/13

Update Number

1791

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: IBM Tivoli Storage Manager Client CAD Service Buffer Overflow


A buffer overflow vulnerability exists in IBM Tivoli Storage Manager Client software. The vulnerability is due to a boundary error in the Client Acceptor Daemon (CAD) service while processing a specially crafted packet. Remote unauthenticated attackers can exploit this vulnerability to inject and execute arbitrary code on the target system. Successful exploitation of this vulnerability would allow for arbitrary code execution with the SYSTEM privileges of the CAD service. If the attack is not successful, the vulnerable service may terminate abnormally due to memory corruption.

Extended Description

IBM Tivoli Storage Manager is prone to multiple buffer-overflow issues and an unauthorized-access issue. Attackers can exploit these issues to cause a denial-of-service condition, to execute arbitrary code, and to read, copy, edit, or delete files on a victim's computer. Other attacks may also be possible.

Affected Products

  • IBM Tivoli Storage Manager 5.3
  • IBM Tivoli Storage Manager 5.3.2.4
  • IBM Tivoli Storage Manager 5.3.2.4 Client
  • IBM Tivoli Storage Manager 5.3.4
  • IBM Tivoli Storage Manager 5.3.5.1
  • IBM Tivoli Storage Manager 5.3.5.1 Client
  • IBM Tivoli Storage Manager 5.3.5.3 Client
  • IBM Tivoli Storage Manager 5.3.6.1
  • IBM Tivoli Storage Manager 5.3.6.2
  • IBM Tivoli Storage Manager 5.3.6.6
  • IBM Tivoli Storage Manager 5.3.6.6 Express
  • IBM Tivoli Storage Manager 5.3 Client
  • IBM Tivoli Storage Manager 5.3 Express
  • IBM Tivoli Storage Manager 5.4
  • IBM Tivoli Storage Manager 5.4.1.2 Client
  • IBM Tivoli Storage Manager 5.4.2.2
  • IBM Tivoli Storage Manager 5.4.2.3
  • IBM Tivoli Storage Manager 5.4.2.4
  • IBM Tivoli Storage Manager 5.4.2.7
  • IBM Tivoli Storage Manager 5.4 Client
  • IBM Tivoli Storage Manager 6.1
  • IBM Tivoli Storage Manager 6.1.0.1

References

  • BugTraq: 36916
  • CVE: CVE-2009-3853

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out