IBM Rational Build Forge 7.0.2 allows remote attackers to cause a denial of service (CPU consumption) via a port scan, which spawns multiple bfagent server processes that attempt to read data from closed sockets.
The product does not release a resource after its effective lifetime has ended, i.e., after the resource is no longer needed.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1019964 | vdb entry third party advisory broken link |
http://www.vupen.com/english/advisories/2008/1427/references | vdb entry broken link |
http://secunia.com/advisories/30081 | broken link third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/42173 | vdb entry third party advisory |
http://www-1.ibm.com/support/docview.wss?uid=swg21303877 | broken link |
http://www.securityfocus.com/bid/29036 | vdb entry third party advisory broken link |