Lucene search

K
cveMitreCVE-2011-0975
HistoryFeb 10, 2011 - 6:00 p.m.

CVE-2011-0975

2011-02-1018:00:59
CWE-119
mitre
web.nvd.nist.gov
30
cve-2011-0975
buffer overflow
bmc patrol agent
performance analysis
performance assurance
servers
virtual servers
tcp port 6768
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

Low

EPSS

0.215

Percentile

96.5%

Stack-based buffer overflow in BMC PATROL Agent Service Daemon for in Performance Analysis for Servers, Performance Assurance for Servers, and Performance Assurance for Virtual Servers 7.4.00 through 7.5.10; Performance Analyzer and Performance Predictor for Servers 7.4.00 through 7.5.10; and Capacity Management Essentials 1.2.00 (7.4.15) allows remote attackers to execute arbitrary code via a crafted length value in a BGS_MULTIPLE_READS command to TCP port 6768.

Affected configurations

Nvd
Node
bmcperformance_analysis_for_serversMatch7.4.00
OR
bmcperformance_analysis_for_serversMatch7.4.10
OR
bmcperformance_analysis_for_serversMatch7.4.15
OR
bmcperformance_analysis_for_serversMatch7.5.00
OR
bmcperformance_analysis_for_serversMatch7.5.10
Node
bmcperformance_assurance_for_serversMatch7.4.00
OR
bmcperformance_assurance_for_serversMatch7.4.10
OR
bmcperformance_assurance_for_serversMatch7.4.15
OR
bmcperformance_assurance_for_serversMatch7.5.00
OR
bmcperformance_assurance_for_serversMatch7.5.10
Node
bmcperformance_assurance_for_virtual_serversMatch7.4.00
OR
bmcperformance_assurance_for_virtual_serversMatch7.4.10
OR
bmcperformance_assurance_for_virtual_serversMatch7.4.15
OR
bmcperformance_assurance_for_virtual_serversMatch7.5.00
OR
bmcperformance_assurance_for_virtual_serversMatch7.5.10
Node
bmcperformance_analyzer_for_serversMatch7.4.00
OR
bmcperformance_analyzer_for_serversMatch7.4.10
OR
bmcperformance_analyzer_for_serversMatch7.4.15
OR
bmcperformance_analyzer_for_serversMatch7.5.00
OR
bmcperformance_analyzer_for_serversMatch7.5.10
Node
bmcperformance_predictor_for_serversMatch7.4.00
OR
bmcperformance_predictor_for_serversMatch7.4.10
OR
bmcperformance_predictor_for_serversMatch7.4.15
OR
bmcperformance_predictor_for_serversMatch7.5.00
OR
bmcperformance_predictor_for_serversMatch7.5.10
Node
bmccapacity_management_essentialsMatch1.2.00
VendorProductVersionCPE
bmcperformance_analysis_for_servers7.4.00cpe:2.3:a:bmc:performance_analysis_for_servers:7.4.00:*:*:*:*:*:*:*
bmcperformance_analysis_for_servers7.4.10cpe:2.3:a:bmc:performance_analysis_for_servers:7.4.10:*:*:*:*:*:*:*
bmcperformance_analysis_for_servers7.4.15cpe:2.3:a:bmc:performance_analysis_for_servers:7.4.15:*:*:*:*:*:*:*
bmcperformance_analysis_for_servers7.5.00cpe:2.3:a:bmc:performance_analysis_for_servers:7.5.00:*:*:*:*:*:*:*
bmcperformance_analysis_for_servers7.5.10cpe:2.3:a:bmc:performance_analysis_for_servers:7.5.10:*:*:*:*:*:*:*
bmcperformance_assurance_for_servers7.4.00cpe:2.3:a:bmc:performance_assurance_for_servers:7.4.00:*:*:*:*:*:*:*
bmcperformance_assurance_for_servers7.4.10cpe:2.3:a:bmc:performance_assurance_for_servers:7.4.10:*:*:*:*:*:*:*
bmcperformance_assurance_for_servers7.4.15cpe:2.3:a:bmc:performance_assurance_for_servers:7.4.15:*:*:*:*:*:*:*
bmcperformance_assurance_for_servers7.5.00cpe:2.3:a:bmc:performance_assurance_for_servers:7.5.00:*:*:*:*:*:*:*
bmcperformance_assurance_for_servers7.5.10cpe:2.3:a:bmc:performance_assurance_for_servers:7.5.10:*:*:*:*:*:*:*
Rows per page:
1-10 of 261

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

8.4

Confidence

Low

EPSS

0.215

Percentile

96.5%