Vulnerability Bulletins |
IBM Security Bulletin: wscanhw and wscansw vulnerabilities in scanner component of IBM License Metric Tool v9, v7.5, 7.2.2, IBM Endpoint Manger for Software Use Analysis v9 and IBM Tivoli Asset Discov |
|
| Affected software | IBM |
|
CIT scanner component contains format string vulnerability in wscanhw executable and stack overflow vulnerability in wscansw executable. Successful exploitation of the vulnerabilities allows for scanner process manipulation, and possibly crashing the process. CVE(s): CVE-2014-8927 and CVE-2014-8926 Affected product(s) and affected version(s): IBM License Metric Tool v9, v7.5, 7.2.2 IBM Endpoint Manger for Software Use Analysis v9 IBM Tivoli Asset Discovery for Distributed v7.5, v7.2.2 More info: https://www-304.ibm.com/connections/blogs/PSIRT/entry/ibm_security_bulletin_wscanhw_and_wscansw_vulnerabilities_in_scanner_component_of_ibm_license_metric_tool_v9_v7_5_7_2_2_ibm_endpoint_manger_for_software_use_analysis_v9_and_ibm_tivoli_asset_discov |
|






