- EPSS 7.59%
- Veröffentlicht 14.09.2012 23:55:15
- Zuletzt bearbeitet 16.06.2026 23:45:43
The NFSv4 client implementation in IBM AIX 5.3, 6.1, and 7.1, and VIOS before 2.2.1.4-FP-25 SP-02, does not properly handle GID values, which allows remote attackers to cause a denial of service via unspecified vectors.
CVE-2012-0723
- EPSS 0.39%
- Veröffentlicht 30.07.2012 19:55:01
- Zuletzt bearbeitet 16.06.2026 23:38:08
The kernel in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly implement the dupmsg system call, which allows local users to cause a denial of service (system crash) via a crafted application.
CVE-2012-2200
- EPSS 0.37%
- Veröffentlicht 27.06.2012 10:18:37
- Zuletzt bearbeitet 16.06.2026 23:41:10
The default configuration of sendmail in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, allows local users to gain privileges by entering a command in a .forward file in a home directory.
CVE-2012-2179
- EPSS 1.75%
- Veröffentlicht 22.06.2012 10:24:07
- Zuletzt bearbeitet 16.06.2026 23:41:08
libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
CVE-2012-2192
- EPSS 0.42%
- Veröffentlicht 20.06.2012 10:27:28
- Zuletzt bearbeitet 16.06.2026 23:41:09
The socketpair function in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.1.4-FP-25 SP-02 allows local users to cause a denial of service (system crash) via a crafted application that leverages the presence of a socket on the free list.
CVE-2012-0745
- EPSS 0.39%
- Veröffentlicht 04.05.2012 16:55:01
- Zuletzt bearbeitet 16.06.2026 23:38:10
The getpwnam function in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.1.0.10 through 2.2.1.3 does not properly interact with customer-extended LDAP user filtering, which allows local users to gain privileges via unspecified vectors.
CVE-2011-1385
- EPSS 3.54%
- Veröffentlicht 02.03.2012 22:55:01
- Zuletzt bearbeitet 16.06.2026 23:29:14
IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.1.x and 2.2.x, allows remote attackers to cause a denial of service (system crash) via an ICMP Echo Reply packet that contains 1 in the Identifier field, a different vulnerability than CVE-2012-0194.
CVE-2012-0194
- EPSS 3.02%
- Veröffentlicht 06.02.2012 20:55:02
- Zuletzt bearbeitet 16.06.2026 23:36:52
The TCP implementation in IBM AIX 5.3, 6.1, and 7.1, when the Large Send Offload option is enabled, allows remote attackers to cause a denial of service (assertion failure and panic) via an unspecified series of packets.
CVE-2011-1375
- EPSS 0.36%
- Veröffentlicht 11.11.2011 21:55:00
- Zuletzt bearbeitet 16.06.2026 23:29:14
IBM AIX 6.1 and 7.1 does not restrict the wpar_limits_config and wpar_limits_modify system calls, which allows local users to cause a denial of service (system crash) via a crafted call.
CVE-2011-3982
- EPSS 0.33%
- Veröffentlicht 05.10.2011 02:56:24
- Zuletzt bearbeitet 16.06.2026 23:34:15
The Fibre Channel driver for QLogic adapters in IBM AIX 6.1 and 7.1 does not properly handle DMA resource limitations, which allows local users to cause a denial of service (system hang) via vectors that generate a large amount of DMA I/O, related to...