CVE-2009-3854

CWE-119Buffer Overflow3 documents3 sources
Severity
10.0CRITICAL
EPSS
11.9%
top 6.27%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 4
Latest updateMay 2

Description

Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 5.3 before 5.3.6.7 and 5.4 before 5.4.2 allows remote attackers to execute arbitrary code via unspecified vectors.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages1 packages

NVDibm/tivoli_storage_manager18 versions+17

Patches

🔴Vulnerability Details

2
GHSA
GHSA-492v-3w28-vwhm: Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 52022-05-02
CVEList
CVE-2009-3854: Buffer overflow in the traditional client scheduler in the client in IBM Tivoli Storage Manager (TSM) 52009-11-04
CVE-2009-3854 (CRITICAL CVSS 10) | Buffer overflow in the traditional | cvebase.io