← All CVEs

CVE-2008-4563

high · 10

Heap-based buffer overflow in adsmdll.dll 5.3.7.7296, as used by the daemon (dsmsvc.exe) in the backup server in IBM Tivoli Storage Manager (TSM) Express 5.3.7.3 and earlier and TSM 5.2, 5.3 before 5.3.6.0, and 5.4.0.0 through 5.4.4.0, allows remote attackers to execute arbitrary code via a crafted length value.

10
CVSS
29.0%
EPSS (exploit prob.)
98th
EPSS percentile
2009-03-11
Published

AV:N/AC:L/Au:N/C:C/I:C/A:C

Weaknesses

CWE-119

Affected products

VendorProductAffected versions
microsoftwindowsall versions
ibmtivoli_storage_manager5.2
ibmtivoli_storage_manager5.3
ibmtivoli_storage_manager5.3.0
ibmtivoli_storage_manager5.3.1
ibmtivoli_storage_manager5.3.2
ibmtivoli_storage_manager5.3.2.4
ibmtivoli_storage_manager5.3.3
ibmtivoli_storage_manager5.3.4
ibmtivoli_storage_manager5.3.5.1
ibmtivoli_storage_manager5.4.0
ibmtivoli_storage_manager5.4.1
ibmtivoli_storage_manager5.4.2
ibmtivoli_storage_manager5.4.2.2
ibmtivoli_storage_manager5.4.2.3
ibmtivoli_storage_manager5.4.2.4
ibmtivoli_storage_manager5.4.4.0
ibmtivoli_storage_manager_express5.3
ibmtivoli_storage_manager_express5.3.3.0
ibmtivoli_storage_manager_express5.3.6.4
ibmtivoli_storage_manager_express5.3.7.3

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2008-4563