First published: Tue Jun 11 2002(Updated: )
Buffer overflow in Tivoli Storage Manager TSM (1) Server or Storage Agents 3.1 through 5.1, and (2) the TSM Client Acceptor Service 4.2 and 5.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 1580 or port 1581.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Tivoli Storage Manager | =4.2 | |
IBM Tivoli Storage Manager | =4.2.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0541 has a high severity level due to its potential to allow remote attackers to crash the server or execute arbitrary code.
To fix CVE-2002-0541, upgrade to a version of Tivoli Storage Manager that is not vulnerable, such as any version above 5.1.
CVE-2002-0541 affects Tivoli Storage Manager versions 3.1 through 5.1 for servers and storage agents, and versions 4.2 and 5.1 for the client acceptor service.
CVE-2002-0541 is a buffer overflow vulnerability that can be exploited via an overly long HTTP GET request.
CVE-2002-0541 can cause a denial of service by crashing the service, and it may also allow for arbitrary code execution.