CVE Reference: CVE-2010-2090

NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2010-2090

Description:
The npb_protocol_error function in sna V5router64 in IBM Communications Server for Windows 6.1.3 and Communications Server for AIX (aka CSAIX or CS/AIX) in sna.rte before 6.3.1.2 allows remote attackers to cause a denial of service (daemon crash) via APPC data containing a GDSID variable with a GDS length that is too small.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/58874

SAID
  Secunia Advisory: SA39909

CONFIRM
  http://www-01.ibm.com/support/docview.wss?uid=swg24013012

BID
  40372

AIXAPAR
  http://www-01.ibm.com/support/docview.wss?uid=swg1IZ68810
  http://www-01.ibm.com/support/docview.wss?uid=swg1JR36026


Return to the previous page.