CVE-2014-3042
Published Jun 10, 2014
Last updated 7 years ago
Overview
- Description
- IBM CICS Transaction Server 3.1, 3.2, 4.1, 4.2, and 5.1 on z/OS does not properly implement CEMT transactions, which allows remote authenticated users to cause a denial of service (storage overlay) by using a 3270 emulator to send an invalid 3270 data stream.
- Source
- psirt@us.ibm.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4
- Impact score
- 2.9
- Exploitability score
- 8
- Vector string
- AV:N/AC:L/Au:S/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-119
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:ibm:cics_transaction_server:-:-:-:*:-:z\\/os:*:*", "vulnerable": true, "matchCriteriaId": "84B8DE50-ABF3-4E94-8319-AEF8715E1DF8" }, { "criteria": "cpe:2.3:a:ibm:cics_transaction_server:3.1:-:-:*:-:z\\/os:*:*", "vulnerable": true, "matchCriteriaId": "35E21A2A-4051-4986-9A34-BD13843D5B2B" }, { "criteria": "cpe:2.3:a:ibm:cics_transaction_server:3.2:-:-:*:*:z\\/os:*:*", "vulnerable": true, "matchCriteriaId": "5B9764BE-DDAA-4139-9724-5AFCB3CCF39D" }, { "criteria": "cpe:2.3:a:ibm:cics_transaction_server:4.1:-:-:*:-:z\\/os:*:*", "vulnerable": true, "matchCriteriaId": "9D4FF2E9-E172-484F-B087-EFDD39CEB79B" }, { "criteria": "cpe:2.3:a:ibm:cics_transaction_server:5.1:-:-:*:-:z\\/os:*:*", "vulnerable": true, "matchCriteriaId": "306F8C33-929E-4A3E-933A-7C9665AA2CCB" } ], "operator": "OR" } ] } ]