CVE-2004-2762: Medium severity IBM Tivoli Storage Manager vulnerability
The server in IBM Tivoli Storage Manager (TSM) 4.2.x on MVS, 5.1.9.x before 5.1.9.1, 5.1.x before 5.1.10, 5.2.2.x before 5.2.2.3, 5.2.x before 5.2.3, 5.3.x before 5.3.0, and 6.x before 6.1, when the HTTP communication method is enabled, allows remote attackers to cause a denial of service (daemon crash or hang) via unspecified HTTP traffic, as demonstrated by the IBM port scanner 1.3.1.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2004-2762?
CVE-2004-2762 has a severity level that corresponds to a denial of service vulnerability affecting various versions of IBM Tivoli Storage Manager.
How do I fix CVE-2004-2762?
To fix CVE-2004-2762, upgrade your IBM Tivoli Storage Manager to a version above 5.1.9.1, 5.2.2.3, 5.3.0, or 6.1.
What versions of IBM Tivoli Storage Manager are affected by CVE-2004-2762?
CVE-2004-2762 affects IBM Tivoli Storage Manager versions 4.2.x, 5.1.0 to 5.1.9, 5.2.0 to 5.2.2, 5.3.x, and 6.x before 6.1.
What type of attack does CVE-2004-2762 facilitate?
CVE-2004-2762 facilitates a denial of service attack that can disrupt the HTTP communication method of the IBM Tivoli Storage Manager server.
Who are the potential attackers for CVE-2004-2762?
Remote attackers can exploit CVE-2004-2762 by targeting the affected versions of IBM Tivoli Storage Manager configured with HTTP communication.