Title : TIBCO Hawk Components Remote Buffer Overflow Vulnerabilities VUPEN ID : VUPEN/ADV-2008-2448 CVE ID : CVE-2008-3338 CWE ID : CWE-119
Rated as : High Risk
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-08-28
Technical Description
Multiple vulnerabilities have been identified in various TIBCO products, which could be exploited by remote attackers to cause a denial of service or compromise a vulnerable system. These issues are caused by buffer overflow errors in the Hawk AMI C library (libtibhawkami) and Hawk HMA (tibhawkhma) components when processing inbound data, which could be exploited by attackers to disclose sensitive information, crash an affected application or execute arbitrary code.