IBM Engineering Systems Design Rhapsody 9.0.2, 10.0, and 10.0.1 is vulnerable to a stack-based buffer overflow, caused by improper bounds checking. A local user could overflow the buffer and execute arbitrary code on the system.
| Software | From | Fixed in |
|---|---|---|
| ibm / engineering_systems_design_rhapsody | 10.0 | 10.0.x |
| ibm / engineering_systems_design_rhapsody | 10.0.1 | 10.0.1.x |
| ibm / engineering_systems_design_rhapsody | 9.0.2 | 9.0.2.x |