Contact | Site en Français               

 


 

Vulnerabilities & Threats

 
  VUPEN Security Advisories
  Linux Security Advisories

  Malware Advisories

  Security Research
  Threat Watch Blog
  Zero-Day Monitor
  Search Engine
  Mailing List & RSS
 
   

>> IBM AIX Multiple Privilege Escalation and Denial of Service Vulnerabilities

Title : IBM AIX Multiple Privilege Escalation and Denial of Service Vulnerabilities
VUPEN ID : VUPEN/ADV-2007-3059
CVE ID : CVE-2007-4791 - CVE-2007-4792 - CVE-2007-4793 - CVE-2007-4794 - CVE-2007-4795 - CVE-2007-4796 - CVE-2007-4797 - CVE-2007-4798 - CVE-2007-4799
Rated as : Moderate Risk 
Remotely Exploitable : No
Locally Exploitable : Yes
Release Date : 2007-09-06


Technical Description    Receive VUPEN Security alerts in a Text format  Receive VUPEN Security alerts in a PDF format  Receive VUPEN Security alerts in an XML format  Receive VUPEN Security notifications by SMS 

Multiple vulnerabilities have been identified in IBM AIX, which could be exploited by local attackers to obtain elevated privileges or cause a denial of service.

The first issue is caused by buffer overflow errors in the fcstat, ibstat, mkpath, swcons, uucp and xlplm programs, and in the directory enabled System V print commands provided with the bos.svprint file set, which could be exploited by local attackers to execute arbitrary code with elevated privileges.

The second vulnerability is caused by an unspecified error in the inventory scout code, which may be exploited by a malicious user to delete system files.

The third issue is caused by an error in the "bos.perf.perfstat" fileset kernel extension, which could be exploited by local attackers to cause a denial of service.

Affected Products

IBM AIX version 5.2.0
IBM AIX version 5.3.0

Solution

IBM AIX 5.2.0 - Apply APARs IY94739, IY98506 (available approx. 11/27/07), IY91132, IZ02717 (available approx. 10/31/07), IY98819 (available approx. 10/31/07), IY97215, and IZ00997 (available approx. 10/31/07).

IBM AIX 5.3.0 - Apply APARs IY94761, IY97233, IY98506 (available approx. 11/27/07), IY91145, IY97309, IZ02718 (available approx. 11/27/07), IY98804 (available approx. 11/27/07), IY95852, and IZ00997 (available approx. 11/27/07).

Or apply interim fixes :

ftp://aix.software.ibm.com/aix/efixes/security/fc_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/ib_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/invscout_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/mkpath_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/perfstat_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/svprint_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/swcons_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/uucp200707_ifix.tar.Z
ftp://aix.software.ibm.com/aix/efixes/security/xlplm_ifix.tar.Z

References

http://www.vupen.com/english/advisories/2007/3059
ftp://aix.software.ibm.com/aix/efixes/security/README
http://www-1.ibm.com/support/docview.wss?uid=isg1IY94739
http://www-1.ibm.com/support/docview.wss?uid=isg1IY98506
http://www-1.ibm.com/support/docview.wss?uid=isg1IY91132
http://www-1.ibm.com/support/docview.wss?uid=isg1IZ02717
http://www-1.ibm.com/support/docview.wss?uid=isg1IY98819
http://www-1.ibm.com/support/docview.wss?uid=isg1IY97215
http://www-1.ibm.com/support/docview.wss?uid=isg1IZ00997
http://www-1.ibm.com/support/docview.wss?uid=isg1IY94761
http://www-1.ibm.com/support/docview.wss?uid=isg1IY97233
http://www-1.ibm.com/support/docview.wss?uid=isg1IY91145
http://www-1.ibm.com/support/docview.wss?uid=isg1IY97309
http://www-1.ibm.com/support/docview.wss?uid=isg1IZ02718
http://www-1.ibm.com/support/docview.wss?uid=isg1IY98804
http://www-1.ibm.com/support/docview.wss?uid=isg1IY95852

Credits

Vulnerabilities reported by the vendor.

ChangeLog

2007-09-06 : Initial release

Vulnerability Management

Subscribe to VUPEN VNS and receive real-time e-mail and SMS alerts when new advisories or patches relevant to your systems and network configurations are available.

Feedback

If you have additional information or corrections for this security advisory please submit them via our contact form.

 

Vulnerability Alerting

Free 14-Day Trial

 
  Latest News

 

  >> 2009-06-10

     

  VUPEN Security Research
  Discovered Critical Flaws
  in Adobe Acrobat and MS

  Office Word


  >> 2009-06-02

     

  VUPEN Security Research
  Discovered Critical Flaws
  in ACDSee Products


  >> 2009-05-22

     

  VUPEN Discovered Two
  Critical Vulnerabilities in
  Novell GroupWise 8 / 7


  >> 2009-05-12

     

  Microsoft Patched 14
  Office PowerPoint Flaws

 

  >> 2009-04-28

     

  Adobe Reader / Acrobat
  Vulnerabilities
Disclosed

 

 

More Informations    
    








Copyright 2003-2009 © VUPEN.COM - Privacy Policy