CVE-2002-0541

IBM Tivoli Storage Manager 3.1-5.1 - Buffer Overflow via Long HTTP GET Request

Title source: llm
STIX 2.1

Description

Buffer overflow in Tivoli Storage Manager TSM (1) Server or Storage Agents 3.1 through 5.1, and (2) the TSM Client Acceptor Service 4.2 and 5.1, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long HTTP GET request to port 1580 or port 1581.

References (7)

Core 7
Core References
Third Party Advisory mailing-list x_refsource_bugtraq
http://archives.neohapsis.com/archives/bugtraq/2002-04/0126.html
Patch, Vendor Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8817.php
Patch, Vendor Advisory vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4500
Third Party Advisory vdb-entry x_refsource_xf
http://www.iss.net/security_center/static/8825.php
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/4492
Patch, Vendor Advisory mailing-list x_refsource_bugtraq
http://online.securityfocus.com/archive/1/267143
Patch, Vendor Advisory x_refsource_confirm
http://www.tivoli.com/support/storage_mgr/flash_httpport.html

Scores

EPSS 0.0400
EPSS Percentile 89.5%

Details

Status published
Products (2)
ibm/tivoli_storage_manager 4.2
ibm/tivoli_storage_manager 4.2.1
Published Jul 03, 2002
Tracked Since Feb 18, 2026