>> IBM Tivoli Provisioning Manager for OS Deployment Denial of Service Vulnerability
Title : IBM Tivoli Provisioning Manager for OS Deployment Denial of Service Vulnerability VUPEN ID : VUPEN/ADV-2007-2560 CVE ID : CVE-2007-3268
Rated as : Low Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2007-07-18
Technical Description
A vulnerability has been identified in IBM Tivoli Provisioning Manager for OS Deployment, which could be exploited by remote attackers to cause a denial of service. This issue is caused by a division-by-zero error in the "rembo.exe" service when processing a TFTP read request (RRQ) with an invalid "blksize" argument, which could be exploited by attackers to crash an affected service, creating a denial of service condition.