Insecure DLL loading in IBM Java SDK - CVE-2019-4473
Published: June 15, 2023
Vulnerability details
The vulnerability allows a local user to compromise vulnerable system.
The vulnerability exists due to the usage of insecure absolute RPATHs. A local user can place a specially crafted .dll file on a remote SMB fileshare, trick the victim into opening a file, associated with the vulnerable application, and execute arbitrary code on victim's system.
Affected software
IBM Cloud Transformation Advisor
IBM Tivoli System Automation Application Manager
Tivoli System Automation for Multiplatforms
How to mitigate CVE-2019-4473
IBM Tivoli System Automation Application Manager - addressed in versions 4.1.0.1.0.13, 4.1.0.2.0.3
Tivoli System Automation for Multiplatforms - addressed in versions 4.1.0.3.0.10, 4.1.0.4.0.1, 4.1.0.4.0.7