|
|
|
![]() |
Vulnerability Note VU#18500IBM AIX portmir buffer overflowOverviewThere is a buffer overflow vulnerability in the AIX portmir command that may allow local attackers to gain root privileges.I. DescriptionThere is a buffer overflow in the AIX portmir command. This problem was described in IBM ERS security bulletin: ERS-SVA-E01-1997:006.1.II. ImpactAttackers with access to a local user account may gain root privileges.III. SolutionApply a PatchIBM has released patches to correct this problem. For AIX version 4.2.1, system administrators should apply APAR#IX71795. Disable the setuid bit on the portmir command
Systems Affected
References
This document was written by Cory F. Cohen.
If you have feedback, comments, or additional information about this vulnerability, please send us
email. |
|||||||||||||||||||||||||||||||||||||
|
|||||||||||||||||||||||||||||||||||||||