HTTP: Host Overflow

This protocol anomaly triggers when an HTTP Host header length exceeds the user-defined maximum. The default length is 256; you can change this setting in the Sensor Settings Rulebase>Protocol Thresholds and Configuration>HTTP>Maximum Host length.

Extended Description

IBM Tivoli Storage Manager client is prone to multiple vulnerabilities that can allow attackers to crash the client, execute arbitrary code in the context of the application, or gain unauthorized access to a client's data. These issues affect Tivoli Storage Manager client 5.1, V5.2, V5.3, and V5.4.

Affected Products

Ibm tivoli_storage_manager

Short Name
HTTP:OVERFLOW:HOST
Severity
Minor
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2003-0178 CVE-2007-4880 CVE-2013-4115 CVE-2017-6367 CVE-2019-7232 CVE-2020-8450 CVE-2023-4966 bid:25743 bid:6870
Release Date
02/12/2004
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3649
False Positive
Unknown
Vendors

Ibm

CVSS Score

7.5

10.0

Found a potential security threat?