First published: Tue Feb 18 2020(Updated: )
CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below contains a null pointer dereference vulnerability in the robot (controller) component. A remote attacker can crash the Controller service.
Credit: vuln@ca.com
Affected Software | Affected Version | How to fix |
---|---|---|
Broadcom Unified Infrastructure Management | <=9.20 | |
Broadcom Unified Infrastructure Management | >=20.3.0<20.4.0 | |
Broadcom Unified Infrastructure Management | =20.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-8011 is a null pointer dereference vulnerability in CA Unified Infrastructure Management (Nimsoft/UIM) 20.1, 20.3.x, and 9.20 and below.
CVE-2020-8011 has a severity rating of 7.5, which is considered high.
The affected software for CVE-2020-8011 includes CA Unified Infrastructure Management (Nimsoft/UIM) versions 20.1, 20.3.x, and 9.20 and below.
A remote attacker can exploit CVE-2020-8011 by crashing the Controller service of CA Unified Infrastructure Management (Nimsoft/UIM).
You can find more information about CVE-2020-8011 in the following references: [Link 1](https://support.broadcom.com/external/content/security-advisories/CA20200205-01-Security-Notice-for-CA-Unified-Infrastructure-Management/7832), [Link 2](https://techdocs.broadcom.com/us/product-content/status/announcement-documents/2019/ca20200205-01-security-notice-for-ca-unified-infrastructure-management.html).