Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

APP:IBM:TME-AGENT

Severity

High

Recommended

No

Recommended Action

Drop

Category

APP

Keywords

IBM Tivoli Monitoring Express Universal Agent Buffer Overflow

Release Date

2010/10/06

Update Number

1786

Supported Platforms

idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

APP: IBM Tivoli Monitoring Express Universal Agent Buffer Overflow


This signature detects attempts to exploit a known vulnerability against IBM Tivoli Monitoring Express. A successful attack can lead to arbitrary code execution.

Extended Description

IBM Tivoli Monitoring Express Universal Agent is prone to multiple buffer-overflow vulnerabilities because the application fails to bounds-check user-supplied data before copying it into an insufficiently sized memory buffer. An attacker can exploit these issues to execute arbitrary code within the context of the vulnerable application. This may facilitate the compromise of affected servers. To leverage these issues, the attacker does not need to authenticate. IBM Tivoli Monitoring Express 6.1 is affected.

Affected Products

  • IBM Tivoli Monitoring Express 6.1

References

  • BugTraq: 23558
  • CVE: CVE-2007-2137

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out