CVE-2013-0508: IBM Tivoli Netcool Application Service Monitors

High severity, CVSS 7.6. EPSS: 3% chance of exploitation in the next 30 days.

Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execute arbitrary code or cause a denial of service via a long line in (1) hrfstable.idx, (2) hrdevice.idx, (3) hrstorage.idx, or (4) lotusmapfile in the SSM Config directory, or (5) .manifest.hive in the main agent directory.

Affected products

  • IBM Tivoli Netcool Application Service Monitors: version 4.0.0 only; version 4.0.1 only
  • IBM Tivoli Netcool System Service Monitors: version 4.0.0 only; version 4.0.1 only

Published 2013-06-05. Last modified 2026-06-16.