Aix
by IBM
CVEs (409)
| CVE | Vendor / Product | Sev | Risk | CVSS | EPSS | KEV | Published | Description |
|---|---|---|---|---|---|---|---|---|
| CVE-2001-1529 | 0.00 | — | 0.01 | Dec 31, 2001 | Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string. NOTE: due to lack of details in the vendor advisory, it is not clear if this is the same issue as CVE-2001-0779. | |||
| CVE-2001-1554 | 0.00 | — | 0.01 | Dec 31, 2001 | IBM AIX 430 does not properly unlock IPPMTU_LOCK, which allows remote attackers to cause a denial of service (hang) via Path Maximum Transmit Unit (PMTU) IP packets. | |||
| CVE-2001-1440 | 0.00 | — | 0.05 | Dec 21, 2001 | Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system. | |||
| CVE-2001-0671 | 0.00 | — | 0.05 | Dec 6, 2001 | Buffer overflows in (1) send_status, (2) kill_print, and (3) chk_fhost in lpd in AIX 4.3 and 5.1 allow remote attackers to gain root privileges. | |||
| CVE-2001-1096 | 0.00 | — | 0.00 | Oct 9, 2001 | Buffer overflows in muxatmd in AIX 4 allows an attacker to cause a core dump and possibly execute code. | |||
| CVE-2001-1095 | 0.00 | — | 0.00 | Oct 9, 2001 | Buffer overflow in uuq in AIX 4 could allow local users to execute arbitrary code via a long -r parameter. | |||
| CVE-2001-0998 | 0.00 | — | 0.03 | Sep 24, 2001 | IBM HACMP 4.4 allows remote attackers to cause a denial of service via a completed TCP connection to HACMP ports (e.g., using a port scan) that does not send additional data, which causes a failure in snmpd. | |||
| CVE-2001-1061 | 0.00 | — | 0.02 | Aug 31, 2001 | Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error. | |||
| CVE-2001-0533 | 0.00 | — | 0.00 | Aug 14, 2001 | Buffer overflow in libi18n library in IBM AIX 5.1 and 4.3.x allows local users to gain root privileges via a long LANG environmental variable. | |||
| CVE-2001-0573 | 0.00 | — | 0.00 | Aug 2, 2001 | lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory. | |||
| CVE-2001-0487 | 0.00 | — | 0.02 | Jun 27, 2001 | AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection. | |||
| CVE-2001-1329 | 0.00 | — | 0.00 | Jun 11, 2001 | Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument. | |||
| CVE-2001-1330 | 0.00 | — | 0.00 | Jun 11, 2001 | Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument. | |||
| CVE-2000-1123 | 0.00 | — | 0.00 | Jan 9, 2001 | Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands. | |||
| CVE-2000-1122 | 0.00 | — | 0.00 | Jan 9, 2001 | Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument. | |||
| CVE-2000-1222 | 0.00 | — | 0.00 | Dec 10, 2000 | AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program. | |||
| CVE-2000-0466 | 0.00 | — | 0.00 | Jun 20, 2000 | AIX cdmount allows local users to gain root privileges via shell metacharacters. | |||
| CVE-2000-0441 | 0.00 | — | 0.01 | May 24, 2000 | Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems. | |||
| CVE-2000-0249 | 0.00 | — | 0.00 | Apr 26, 2000 | The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program. | |||
| CVE-2000-1216 | 0.00 | — | 0.00 | Jan 27, 2000 | Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine. |
- CVE-2001-1529Dec 31, 2001risk 0.00cvss —epss 0.01
Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string. NOTE: due to lack of details in the vendor advisory, it is not clear if this is the same issue as CVE-2001-0779.
- CVE-2001-1554Dec 31, 2001risk 0.00cvss —epss 0.01
IBM AIX 430 does not properly unlock IPPMTU_LOCK, which allows remote attackers to cause a denial of service (hang) via Path Maximum Transmit Unit (PMTU) IP packets.
- CVE-2001-1440Dec 21, 2001risk 0.00cvss —epss 0.05
Unknown vulnerability in login for AIX 5.1L, when using loadable authentication modules, allows remote attackers to gain access to the system.
- CVE-2001-0671Dec 6, 2001risk 0.00cvss —epss 0.05
Buffer overflows in (1) send_status, (2) kill_print, and (3) chk_fhost in lpd in AIX 4.3 and 5.1 allow remote attackers to gain root privileges.
- CVE-2001-1096Oct 9, 2001risk 0.00cvss —epss 0.00
Buffer overflows in muxatmd in AIX 4 allows an attacker to cause a core dump and possibly execute code.
- CVE-2001-1095Oct 9, 2001risk 0.00cvss —epss 0.00
Buffer overflow in uuq in AIX 4 could allow local users to execute arbitrary code via a long -r parameter.
- CVE-2001-0998Sep 24, 2001risk 0.00cvss —epss 0.03
IBM HACMP 4.4 allows remote attackers to cause a denial of service via a completed TCP connection to HACMP ports (e.g., using a port scan) that does not send additional data, which causes a failure in snmpd.
- CVE-2001-1061Aug 31, 2001risk 0.00cvss —epss 0.02
Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.
- CVE-2001-0533Aug 14, 2001risk 0.00cvss —epss 0.00
Buffer overflow in libi18n library in IBM AIX 5.1 and 4.3.x allows local users to gain root privileges via a long LANG environmental variable.
- CVE-2001-0573Aug 2, 2001risk 0.00cvss —epss 0.00
lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory.
- CVE-2001-0487Jun 27, 2001risk 0.00cvss —epss 0.02
AIX SNMP server snmpd allows remote attackers to cause a denial of service via a RST during the TCP connection.
- CVE-2001-1329Jun 11, 2001risk 0.00cvss —epss 0.00
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
- CVE-2001-1330Jun 11, 2001risk 0.00cvss —epss 0.00
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
- CVE-2000-1123Jan 9, 2001risk 0.00cvss —epss 0.00
Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands.
- CVE-2000-1122Jan 9, 2001risk 0.00cvss —epss 0.00
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
- CVE-2000-1222Dec 10, 2000risk 0.00cvss —epss 0.00
AIX sysback before 4.2.1.13 uses a relative path to find and execute the hostname program, which allows local users to gain privileges by modifying the path to point to a malicious hostname program.
- CVE-2000-0466Jun 20, 2000risk 0.00cvss —epss 0.00
AIX cdmount allows local users to gain root privileges via shell metacharacters.
- CVE-2000-0441May 24, 2000risk 0.00cvss —epss 0.01
Vulnerability in AIX 3.2.x and 4.x allows local users to gain write access to files on locally or remotely mounted AIX filesystems.
- CVE-2000-0249Apr 26, 2000risk 0.00cvss —epss 0.00
The AIX Fast Response Cache Accelerator (FRCA) allows local users to modify arbitrary files via the configuration capability in the frcactrl program.
- CVE-2000-1216Jan 27, 2000risk 0.00cvss —epss 0.00
Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.
Page 18 of 21