CVE-2008-1704

Multiple buffer overflows in TIBCO Software Enterprise Message Service (EMS) before 4.4.3, and iProcess Engine 10.6.0 through 10.6.1, allow remote attackers to execute arbitrary code via a crafted message to the EMS server.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:tibco:enterprise_message_service:*:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.0.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.1.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.2.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.3.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.4.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:enterprise_message_service:4.4.1:*:*:*:*:*:*:*
cpe:2.3:a:tibco:iprocess_engine:10.6.0:*:*:*:*:*:*:*
cpe:2.3:a:tibco:iprocess_engine:10.6.1:*:*:*:*:*:*:*

History

21 Nov 2024, 00:45

Type Values Removed Values Added
References () http://secunia.com/advisories/29775 - Vendor Advisory () http://secunia.com/advisories/29775 - Vendor Advisory
References () http://www.securityfocus.com/bid/28717 - () http://www.securityfocus.com/bid/28717 -
References () http://www.securitytracker.com/id?1019826 - () http://www.securitytracker.com/id?1019826 -
References () http://www.tibco.com/resources/mk/ems_security_advisory_20080409.txt - () http://www.tibco.com/resources/mk/ems_security_advisory_20080409.txt -
References () http://www.vupen.com/english/advisories/2008/1190/references - () http://www.vupen.com/english/advisories/2008/1190/references -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/41761 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/41761 -

Information

Published : 2008-04-11 10:05

Updated : 2024-11-21 00:45


NVD link : CVE-2008-1704

Mitre link : CVE-2008-1704

CVE.ORG link : CVE-2008-1704


JSON object : View

Products Affected

tibco

  • iprocess_engine
  • enterprise_message_service
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer