First published: Mon Apr 17 2017(Updated: )
IBM Cognos TM1 10.1 and 10.2 is vulnerable to a denial of service, caused by a stack-based buffer overflow when parsing packets. A remote attacker could exploit this vulnerability to cause a denial of service. IBM X-Force ID: 114612.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Cognos Business Intelligence | =10.1 | |
IBM Cognos Business Intelligence | =10.2 | |
IBM Cognos Business Intelligence | =10.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2016-3036 is classified as a denial of service vulnerability.
CVE-2016-3036 affects IBM Cognos TM1 by enabling a remote attacker to exploit a stack-based buffer overflow.
CVE-2016-3036 affects IBM Cognos TM1 versions 10.1 and 10.2.
Mitigating CVE-2016-3036 involves applying security patches provided by IBM for affected versions.
CVE-2016-3036 can lead to a denial of service attack, disrupting access to the application.