IBM Product Security Update Advisory

IBM Product Security Update Advisory

Overview

 

We have released a security update to fix vulnerabilities in IBM products. Users of affected products are advised to update to the latest version.
 

 

Affected Products

 

Cve-2025-3320, cve-2025-3354

 

IBM Tivoli Monitoring Versions: 6.3.0.7 and later 6.3.0.7 Service Pack 20 and earlier

 

 

Resolved Vulnerabilities

 

Heap-based buffer overflow vulnerability due to improper boundary checking in IBM Tivoli Monitoring (CVE-2025-3320, CVE-2025-3354)

 

 

Vulnerability Patches

vulnerability patches have been made available in the latest updates. Please follow the instructions on the Referenced Sites to update to the latest Vulnerability Patches version.

 

Cve-2025-3320, cve-2025-3354

 

IBM Tivoli Monitoring Version: 6.3.0.7-TIV-ITM-SP0021 [2]

 

 

References

 

[1] Security Bulletin: IBM Tivoli Monitoring is affected by heap buffer overflow vulnerabilities
https://www.ibm.com/support/pages/node/7241472
[2] IBM Tivoli Monitoring 6.3.0 Fix Pack 7 Service Pack 21 (6.3.0.7-TIV-ITM-SP0021) readme file
https://www.ibm.com/support/pages/ibm-tivoli-monitoring-630-fix-pack-7-service-pack-21-6307-tiv-itm-sp0021-readme-file