Secunia Security Advisory - IBM has acknowledged some vulnerabilities in IBM Tivoli Monitoring, which can be exploited by malicious people to cause a DoS (Denial of Service).
697fec32ffe165133d3d76c40d622e2b4b8cc219bee9162fb2a496c7fdbdf11b
TITLE:
IBM Tivoli Monitoring Web Health Console HTTP Server Vulnerabilities
SECUNIA ADVISORY ID:
SA17065
VERIFY ADVISORY:
http://secunia.com/advisories/17065/
CRITICAL:
Moderately critical
IMPACT:
DoS
WHERE:
>From remote
SOFTWARE:
IBM Tivoli Monitoring 5.x
http://secunia.com/product/5803/
DESCRIPTION:
IBM has acknowledged some vulnerabilities in IBM Tivoli Monitoring,
which can be exploited by malicious people to cause a DoS (Denial of
Service).
The vulnerabilities are caused due to older versions of IBM HTTP
server being installed with the WHC (Web Health Console).
For more information:
SA11783
SA11957
SOLUTION:
Update the IBM HTTP server to a later version.
http://www-1.ibm.com/support/docview.wss?rs=177&context=SSEQTJ&uid=swg27005198
PROVIDED AND/OR DISCOVERED BY:
Reported by vendor.
ORIGINAL ADVISORY:
http://www-1.ibm.com/support/docview.wss?uid=swg21214217
OTHER REFERENCES:
SA11783:
http://secunia.com/advisories/11783/
SA11957:
http://secunia.com/advisories/11957/
----------------------------------------------------------------------
About:
This Advisory was delivered by Secunia as a free service to help
everybody keeping their systems up to date against the latest
vulnerabilities.
Subscribe:
http://secunia.com/secunia_security_advisories/
Definitions: (Criticality, Where etc.)
http://secunia.com/about_secunia_advisories/
Please Note:
Secunia recommends that you verify all advisories you receive by
clicking the link.
Secunia NEVER sends attached files with advisories.
Secunia does not advise people to install third party patches, only
use those supplied by the vendor.
----------------------------------------------------------------------