First published: Wed Nov 14 2012(Updated: )
IBM Cognos Business Intelligence (BI) 8.4 and 8.4.1 allows remote authenticated users to cause a denial of service (CPU consumption) via a crafted request containing a zero-valued byte.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Business Intelligence | =8.4 | |
IBM Cognos Business Intelligence | =8.4.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-4847 is considered a moderate severity vulnerability due to its potential for denial of service through CPU consumption.
To fix CVE-2012-4847, upgrade to IBM Cognos Business Intelligence version 8.4.2 or later, which addresses this vulnerability.
Users of IBM Cognos Business Intelligence versions 8.4 and 8.4.1 are affected by CVE-2012-4847.
CVE-2012-4847 is a denial of service vulnerability that allows remote authenticated users to consume excessive CPU resources.
Yes, CVE-2012-4847 can be exploited remotely by authenticated users who send crafted requests.