IBM Sterling External Authentication Server and IBM Sterling Secure Proxy 6.0.3.0, 6.0.2.0, and 3.4.3.2 could allow a remote user to consume resources causing a denial of service due to a resource leak. IBM X-Force ID: 219395.
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Sterling_external_authentication_server | Ibm | 3.4.3.2 (including) | 3.4.3.2 (including) |
| Sterling_external_authentication_server | Ibm | 6.0.2.0 (including) | 6.0.2.0 (including) |
| Sterling_external_authentication_server | Ibm | 6.0.3.0 (including) | 6.0.3.0 (including) |
| Sterling_secure_proxy | Ibm | 3.4.3.2 (including) | 3.4.3.2 (including) |
| Sterling_secure_proxy | Ibm | 6.0.2 (including) | 6.0.2 (including) |
| Sterling_secure_proxy | Ibm | 6.0.3.0 (including) | 6.0.3.0 (including) |