← Back

CVE-2008-7289

nvd nist
Published: Apr 21, 2011Modified: Apr 29, 2026

JSON object

Loading...
4.0
Vector
AV:N/AC:L/Au:S/C:N/I:N/A:P
Exploitability: 8.0 / Impact: 2.9
Source: NVD

Description

IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 does not properly handle the simultaneous changing of multiple passwords, which makes it easier for remote authenticated users to cause a denial of service (DB2 daemon deadlock) by making password changes that trigger updates to a DB2 password-history table.

Affected (2)

1 product
Tivoli Directory Server
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Ibm
Version 5.2.0.4
Version 5.2.0

References (4)

Timeline

No history available yet.