Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown
CVE-2008-3277
Disclosure Date: April 15, 2014 (last updated October 05, 2023)
Untrusted search path vulnerability in a certain Red Hat build script for the ibmssh executable in ibutils packages before ibutils-1.5.7-2.el6 in Red Hat Enterprise Linux (RHEL) 6 and ibutils-1.2-11.2.el5 in Red Hat Enterprise Linux (RHEL) 5 allows local users to gain privileges via a Trojan Horse program in refix/lib/, related to an incorrect RPATH setting in the ELF header.
0
Attacker Value
Unknown
CVE-2013-2561
Disclosure Date: November 23, 2013 (last updated October 05, 2023)
OpenFabrics ibutils 1.5.7 allows local users to overwrite arbitrary files via a symlink attack on (1) ibdiagnet.db, (2) ibdiagnet.fdbs, (3) ibdiagnet_ibis.log, (4) ibdiagnet.log, (5) ibdiagnet.lst, (6) ibdiagnet.mcfdbs, (7) ibdiagnet.pkey, (8) ibdiagnet.psl, (9) ibdiagnet.slvl, or (10) ibdiagnet.sm in /tmp/.
0
Attacker Value
Unknown
CVE-2012-4518
Disclosure Date: October 22, 2012 (last updated October 05, 2023)
ibacm 1.0.7 creates files with world-writable permissions, which allows local users to overwrite the ib_acm daemon log or ibacm.port file.
0
Attacker Value
Unknown
CVE-2012-4516
Disclosure Date: October 22, 2012 (last updated October 05, 2023)
librdmacm 1.0.16, when ibacm.port is not specified, connects to port 6125, which allows remote attackers to specify the address resolution information for the application via a malicious ib_acm service.
0
Attacker Value
Unknown
CVE-2012-4517
Disclosure Date: October 22, 2012 (last updated October 05, 2023)
ibacm before 1.0.6 does not properly manage reference counts for multicast connections, which allows remote attackers to cause a denial of service (ibacm service crash) via a crafted join response.
0
Attacker Value
Unknown
CVE-2011-3345
Disclosure Date: September 19, 2011 (last updated October 04, 2023)
ulp/sdp/sdp_proc.c in the ib_sdp module (aka ib_sdp.ko) in the ofa_kernel package in the InfiniBand driver implementation in OpenFabrics Enterprise Distribution (OFED) before 1.5.3 does not properly handle certain non-array variables, which allows local users to cause a denial of service (stack memory corruption and system crash) by reading the /proc/net/sdpstats file.
0
Attacker Value
Unknown
CVE-2010-4173
Disclosure Date: November 22, 2010 (last updated October 04, 2023)
The default configuration of libsdp.conf in libsdp 1.1.104 and earlier creates log files in /tmp, which allows local users to overwrite arbitrary files via a (1) symlink or (2) hard link attack on the libsdp.log.##### temporary file.
0
Attacker Value
Unknown
CVE-2010-1693
Disclosure Date: October 26, 2010 (last updated October 04, 2023)
openibd in OpenFabrics Enterprise Distribution (OFED) 1.5.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ib_set_node_desc.sh temporary file.
0