Vulnerability Details CVE-2010-2090
The npb_protocol_error function in sna V5router64 in IBM Communications Server for Windows 6.1.3 and Communications Server for AIX (aka CSAIX or CS/AIX) in sna.rte before 6.3.1.2 allows remote attackers to cause a denial of service (daemon crash) via APPC data containing a GDSID variable with a GDS length that is too small.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.013
EPSS Ranking 78.9%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2010-2090
-
cpe:2.3:a:ibm:communications_server:6.1.3
-
cpe:2.3:a:ibm:communications_server:6.3.1.0
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:o:ibm:aix:4.2.1.12
-
-
-
-
-
-
-
-
-
cpe:2.3:o:ibm:aix:5.1.0.10
-
-
-
-
cpe:2.3:o:ibm:aix:5.2.0.50
-
cpe:2.3:o:ibm:aix:5.2.0.54
-
-
-
-
-
cpe:2.3:o:ibm:aix:5.3.0.10
-
cpe:2.3:o:ibm:aix:5.3.0.20
-
-
-
-
-
cpe:2.3:o:ibm:aix:5.3_ml03
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:o:ibm:aix:7.2.4.0
-
-
cpe:2.3:o:ibm:aix:7.2.5.0
-
cpe:2.3:o:ibm:aix:7.2.5.1
-
Ibm
»
Aix
»
Version: 7.2.5.100
cpe:2.3:o:ibm:aix:7.2.5.100
-
-
-
cpe:2.3:o:ibm:aix:7.3.0.0
-
cpe:2.3:o:microsoft:windows:-
-
cpe:2.3:o:microsoft:windows:1.0
-
cpe:2.3:o:microsoft:windows:2.0
-
cpe:2.3:o:microsoft:windows:2000
-
cpe:2.3:o:microsoft:windows:3.0
-
cpe:2.3:o:microsoft:windows:3.1
-
cpe:2.3:o:microsoft:windows:3.11
-
cpe:2.3:o:microsoft:windows:server_2008
-
cpe:2.3:o:microsoft:windows:vista