First published: Wed Nov 30 2016(Updated: )
The broker application in IBM BigFix Remote Control before 9.1.3 allows remote attackers to cause a denial of service via an invalid HTTP request.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM BigFix Remote Control | <=9.1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-2935 is classified as a high severity vulnerability due to the potential for remote denial of service attacks.
To fix CVE-2016-2935, upgrade IBM BigFix Remote Control to version 9.1.3 or later.
CVE-2016-2935 affects IBM BigFix Remote Control versions prior to 9.1.3.
CVE-2016-2935 allows remote attackers to cause a denial of service through an invalid HTTP request.
There are no documented workarounds for CVE-2016-2935; the only mitigation is to upgrade to the patched version.