The TFTP implementation in IBM Tivoli Provisioning Manager for OS Deployment 5.1 before Fix Pack 3 allows remote attackers to cause a denial of service (rembo.exe crash and multiple service outage) via a read (RRQ) request with an invalid blksize (blocksize), which triggers a divide-by-zero error.
The product divides a value by zero.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Tivoli_provisioning_manager_os_deployment | Ibm | 5.1.0.2 (including) | 5.1.0.2 (including) |