Title : TIBCO SmartSockets RTserver Multiple Code Execution Vulnerabilities VUPEN ID : VUPEN/ADV-2008-0173 CVE ID : CVE-2007-5655 - CVE-2007-5656 - CVE-2007-5657 - CVE-2007-5658
Rated as : Critical
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-01-17
Technical Description
Multiple vulnerabilities have been identified in various TIBCO products, which could be exploited by remote attackers to cause a denial of service or take complete control of an affected system. These issues are caused by input validation errors in the RTserver when processing uer-supplied data, which could be exploited by remote attackers to crash an affected application execute arbitrary code via a specially crafted packet.