English
The Internet threat alert status is currently normal. At present, no major epidemics or other serious incidents have been recorded by Kaspersky Lab’s monitoring service. Internet threat level: 1

IBM Tivoli Access Manager for e-business Java Double Literal Denial of Service Vulnerability


Secunia ID

SA49108

CVE-ID

CVE-2010-4476

Release Date

07 May 2012

Criticality

Less Critical

Solution Status

Vendor Patch

Software

IBM Tivoli Access Manager for e-business 6.x

Where

From local network

Impact
DoS (Denial of Service)

This includes vulnerabilities ranging from excessive resource consumption (e.g. causing a system to use a lot of memory) to crashing an application or an entire system.

Description

IBM has acknowledged a vulnerability in Tivoli Access Manager for e-business, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information see vulnerability #1:
SA43262

The vulnerability is reported in version 6.1.1.

Solution

Apply patch 6.1.1-TIV-TAM-FP0005.

Original Advisory

IBM:
http://www-01.ibm.com/support/docview.wss?uid=swg24032592