Show filters
157 Total Results
Displaying 21-30 of 157
Sort by:
Attacker Value
Unknown
CVE-2010-1124
Disclosure Date: March 26, 2010 (last updated October 04, 2023)
bos.rte.libc 5.3.9.4 on IBM AIX 5.3 does not properly support reading a certain address field after a successful getaddrinfo function call, which allows context-dependent attackers to cause a denial of service (application crash) via unspecified vectors, as demonstrated by IBM DB2 crashes on "systems with databases cataloged with alternate servers using IP addresses."
0
Attacker Value
Unknown
CVE-2010-0922
Disclosure Date: March 03, 2010 (last updated October 04, 2023)
Unspecified vulnerability in secldapclntd in IBM AIX 5.3 with SP 5300-11-02 allows attackers to cause a denial of service (LDAP login failure) via unknown vectors. NOTE: some of these details are obtained from third party information. NOTE: there may be no attacker role, and the issue may be triggered entirely by an administrator's installation of an official service pack.
0
Attacker Value
Unknown
CVE-2009-3699
Disclosure Date: October 15, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in libcsa.a (aka the calendar daemon library) in IBM AIX 5.x through 5.3.10 and 6.x through 6.1.3, and VIOS 2.1 and earlier, allows remote attackers to execute arbitrary code via a long XDR string in the first argument to procedure 21 of rpc.cmsd.
0
Attacker Value
Unknown
CVE-2009-3517
Disclosure Date: October 01, 2009 (last updated October 04, 2023)
nfs.ext in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly use the nfs_portmon setting, which allows remote attackers to bypass intended access restrictions for NFSv4 shares via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-3516
Disclosure Date: October 01, 2009 (last updated October 04, 2023)
gssd in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly handle the NFSv4 Kerberos credential cache, which allows local users to bypass intended access restrictions for Kerberized NFSv4 shares via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-2727
Disclosure Date: August 10, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the rpc.ttdbserver daemon is enabled in /etc/inetd.conf, allows remote attackers to execute arbitrary code via a long XDR-encoded ASCII string to remote procedure 15.
0
Attacker Value
Unknown
CVE-2009-2669
Disclosure Date: August 05, 2009 (last updated October 04, 2023)
A certain debugging component in IBM AIX 5.3 and 6.1 does not properly handle the (1) _LIB_INIT_DBG and (2) _LIB_INIT_DBG_FILE environment variables, which allows local users to gain privileges by leveraging a setuid-root program to create an arbitrary root-owned file with world-writable permissions, related to libC.a (aka the XL C++ runtime library) in AIX 5.3 and libc.a in AIX 6.1.
0
Attacker Value
Unknown
CVE-2009-2434
Disclosure Date: July 13, 2009 (last updated October 04, 2023)
Buffer overflow in the syscall implementation in IBM AIX 5.3 allows local users to gain privileges via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-1954
Disclosure Date: June 08, 2009 (last updated October 04, 2023)
Unspecified vulnerability in portmapper (aka portmap) in IBM AIX 5.3 allows attackers to cause a denial of service (daemon hang) via unknown vectors, related to libtli.
0
Attacker Value
Unknown
CVE-2009-1786
Disclosure Date: May 26, 2009 (last updated October 04, 2023)
The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file associated with the MALLOCDEBUG environment variable.
0