CVE-2016-3628: Buffer Overflow
Buffer overflow in tibemsd in the server in TIBCO Enterprise Message Service (EMS) before 8.3.0 and EMS Appliance before 2.4.0 allows remote authenticated users to cause a denial of service or possibly execute arbitrary code via crafted inbound data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-3628?
CVE-2016-3628 has a severity level that may lead to denial of service and potential arbitrary code execution.
How do I fix CVE-2016-3628?
To fix CVE-2016-3628, upgrade TIBCO Enterprise Message Service to version 8.3.0 or later and TIBCO EMS Appliance to version 2.4.0 or later.
Which TIBCO products are affected by CVE-2016-3628?
CVE-2016-3628 affects TIBCO Enterprise Message Service versions up to 8.2.2 and TIBCO EMS Appliance Firmware versions up to 2.3.1.
Is CVE-2016-3628 exploitable over the network?
Yes, CVE-2016-3628 is exploitable by remote authenticated users who send crafted inbound data.
What are the potential impacts of CVE-2016-3628?
The potential impacts of CVE-2016-3628 include service interruption and the possibility of executing arbitrary code.