Vulnerabilities (CVE)

Filtered by vendor Ibm Subscribe
Filtered by product Aix
Total 701 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2009-2669 1 Ibm 1 Aix 2009-08-12 7.2 HIGH N/A
A certain debugging component in IBM AIX 5.3 and 6.1 does not properly handle the (1) _LIB_INIT_DBG and (2) _LIB_INIT_DBG_FILE environment variables, which allows local users to gain privileges by leveraging a setuid-root program to create an arbitrary root-owned file with world-writable permissions, related to libC.a (aka the XL C++ runtime library) in AIX 5.3 and libc.a in AIX 6.1.
CVE-2009-2727 1 Ibm 1 Aix 2009-08-11 9.3 HIGH N/A
Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the rpc.ttdbserver daemon is enabled in /etc/inetd.conf, allows remote attackers to execute arbitrary code via a long XDR-encoded ASCII string to remote procedure 15.
CVE-2009-0779 1 Ibm 1 Aix 2009-03-04 7.2 HIGH N/A
Buffer overflow in pppdial in IBM AIX 5.3 and 6.1 allows local users to gain privileges via a long "input string."
CVE-2008-5386 1 Ibm 1 Aix 2008-12-17 6.9 MEDIUM N/A
Buffer overflow in ndp in IBM AIX 6.1.0 through 6.1.2, when the netcd daemon is running, allows local users to gain privileges via unspecified vectors.
CVE-2008-5385 1 Ibm 1 Aix 2008-12-17 6.9 MEDIUM N/A
enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local users to delete arbitrary files via unspecified vectors.
CVE-2003-0784 1 Ibm 1 Aix 2008-09-10 10.0 HIGH N/A
Format string vulnerability in tsm for the bos.rte.security fileset on AIX 5.2 allows remote attackers to gain root privileges via login, and local users to gain privileges via login, su, or passwd, with a username that contains format string specifiers.
CVE-2003-0697 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows local users to cause a denial of service (crash) or gain root privileges.
CVE-2002-0790 1 Ibm 1 Aix 2008-09-10 2.1 LOW N/A
clchkspuser and clpasswdremote in AIX expose an encrypted password in the cspoc.log file, which could allow local users to gain privileges.
CVE-2000-0441 1 Ibm 1 Aix 2008-09-10 5.0 MEDIUM N/A
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
CVE-2000-0249 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
CVE-1999-1552 1 Ibm 1 Aix 2008-09-10 7.2 HIGH N/A
dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.
CVE-1999-0789 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in AIX ftpd in the libc library.
CVE-1999-0745 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.
CVE-1999-0694 1 Ibm 1 Aix 2008-09-09 2.1 LOW N/A
Denial of service in AIX ptrace system call allows local users to crash the system.
CVE-1999-0131 8 Bsdi, Digital, Eric Allman and 5 more 9 Bsd Os, Osf 1, Sendmail and 6 more 2008-09-09 7.2 HIGH N/A
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
CVE-1999-0130 7 Bsdi, Caldera, Eric Allman and 4 more 7 Bsd Os, Network Desktop, Sendmail and 4 more 2008-09-09 7.2 HIGH N/A
Local users can start Sendmail in daemon mode and gain root privileges.
CVE-1999-0116 1 Ibm 2 Aix, Sng 2008-09-09 5.0 MEDIUM N/A
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
CVE-1999-0115 1 Ibm 1 Aix 2008-09-09 7.2 HIGH N/A
AIX bugfiler program allows local users to gain root access.
CVE-1999-0101 1 Ibm 1 Aix 2008-09-09 10.0 HIGH N/A
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
CVE-1999-0087 1 Ibm 1 Aix 2008-09-09 5.0 MEDIUM N/A
Denial of service in AIX telnet can freeze a system and prevent users from accessing the server.