CVE-2015-4555

TIBCO Messaging Appliance < 8.7.2 - Buffer Overflow in HTTP Administrative Interface

Title source: llm
STIX 2.1

Description

Buffer overflow in the HTTP administrative interface in TIBCO Rendezvous before 8.4.4, Rendezvous Network Server before 1.1.1, Substation ES before 2.9.0, and Messaging Appliance before 8.7.2 allows remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors, related to the Rendezvous Daemon (rvd), Routing Daemon (rvrd), Secure Daemon (rvsd), Secure Routing Daemon (rvsrd), Gateway Daemon (rvgd), Daemon Adapter (rvda), Cache (rvcache), Agent (rva), and Relay Agent (rvrad) components.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1033677
Vendor Advisory x_refsource_confirm
http://www.tibco.com/mk/advisory.jsp

Scores

EPSS 0.0108
EPSS Percentile 78.0%

Details

Status published
Products (4)
tibco/messaging_appliance < 8.7.1
tibco/rendezvous < 8.4.3
tibco/rendezvous_network_server < 1.1.0
tibco/substation_es < 2.8.1
Published Aug 30, 2015
Tracked Since Feb 18, 2026