Security Advisory

CVE-2020-4207

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-01-28 18:30:57
Last updated 2024-09-17 04:20:23
Assigner ibm
State PUBLISHED

Description

IBM Watson IoT Message Gateway 2.0.0.x, 5.0.0.0, 5.0.0.1, and 5.0.0.2 is vulnerable to a buffer overflow, caused by improper bounds checking when handling a failed HTTP request with specific content in the headers. By sending a specially crafted HTTP request, a remote attacker could overflow a buffer and execute arbitrary code on the system or cause a denial of service. IBM X-Force ID: 174972.