Lucene search

K
nvd[email protected]NVD:CVE-2009-3853
HistoryNov 04, 2009 - 3:30 p.m.

CVE-2009-3853

2009-11-0415:30:00
CWE-119
web.nvd.nist.gov
7

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.96

Percentile

99.5%

Stack-based buffer overflow in the client acceptor daemon (CAD) scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7, 5.4 before 5.4.3, 5.5 before 5.5.2.2, and 6.1 before 6.1.0.2, and TSM Express 5.3.3.0 through 5.3.6.6, allows remote attackers to execute arbitrary code via crafted data in a TCP packet.

Affected configurations

Nvd
Node
ibmtivoli_storage_managerMatch5.2.5.3
OR
ibmtivoli_storage_managerMatch5.3
OR
ibmtivoli_storage_managerMatch5.3.0
OR
ibmtivoli_storage_managerMatch5.3.1
OR
ibmtivoli_storage_managerMatch5.3.2
OR
ibmtivoli_storage_managerMatch5.3.2.4
OR
ibmtivoli_storage_managerMatch5.3.3
OR
ibmtivoli_storage_managerMatch5.3.3express
OR
ibmtivoli_storage_managerMatch5.3.4
OR
ibmtivoli_storage_managerMatch5.3.4express
OR
ibmtivoli_storage_managerMatch5.3.5express
OR
ibmtivoli_storage_managerMatch5.3.5.1
OR
ibmtivoli_storage_managerMatch5.3.6express
OR
ibmtivoli_storage_managerMatch5.3.6.1
OR
ibmtivoli_storage_managerMatch5.3.6.2
OR
ibmtivoli_storage_managerMatch5.3.6.3
OR
ibmtivoli_storage_managerMatch5.3.6.4
OR
ibmtivoli_storage_managerMatch5.3.6.5
OR
ibmtivoli_storage_managerMatch5.3.6.6
OR
ibmtivoli_storage_managerMatch5.3.6.6express
OR
ibmtivoli_storage_managerMatch5.4.0
OR
ibmtivoli_storage_managerMatch5.4.1
OR
ibmtivoli_storage_managerMatch5.4.2
OR
ibmtivoli_storage_managerMatch5.5.0
OR
ibmtivoli_storage_managerMatch5.5.1
OR
ibmtivoli_storage_managerMatch5.5.2
OR
ibmtivoli_storage_managerMatch6.1.0
VendorProductVersionCPE
ibmtivoli_storage_manager5.2.5.3cpe:2.3:a:ibm:tivoli_storage_manager:5.2.5.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3cpe:2.3:a:ibm:tivoli_storage_manager:5.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.0cpe:2.3:a:ibm:tivoli_storage_manager:5.3.0:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.1cpe:2.3:a:ibm:tivoli_storage_manager:5.3.1:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.2cpe:2.3:a:ibm:tivoli_storage_manager:5.3.2:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.2.4cpe:2.3:a:ibm:tivoli_storage_manager:5.3.2.4:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.3cpe:2.3:a:ibm:tivoli_storage_manager:5.3.3:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.3cpe:2.3:a:ibm:tivoli_storage_manager:5.3.3:*:express:*:*:*:*:*
ibmtivoli_storage_manager5.3.4cpe:2.3:a:ibm:tivoli_storage_manager:5.3.4:*:*:*:*:*:*:*
ibmtivoli_storage_manager5.3.4cpe:2.3:a:ibm:tivoli_storage_manager:5.3.4:*:express:*:*:*:*:*
Rows per page:
1-10 of 271

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.96

Percentile

99.5%