Secunia Research has discovered a vulnerability in IBM Tivoli Storage Manager Client, which can be exploited by malicious people to compromise a vulnerable system. The vulnerability is caused by an input validation error in the CAD service. This can be exploited to cause a stack-based buffer overflow by sending a specially crafted packet via TCP. Successful exploitation allows execution of arbitrary code. IBM Tivoli Storage Manager Express Client version 5.3.6.2 is affected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/82462/secunia-tsmoverflow.txt
Source: https://packetstormsecurity.com/files/82462/IBM-Tivoli-Storage-Manager-CAD-Service-Buffer-Overflow.html

