VendorsIBMaixall versions
Vulnerabilities

IBM AIX

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

992CVEs
CVE-2008-2513
Buffer overflow in the kernel in IBM AIX 5.2, 5.3, and 6.1 allows local users to execute arbitrary code in kernel mode via unknown attack vectors.
Published 2008-06-02 · Modified
7.2EPSS 0.005
CVE-2006-5006
Buffer overflow in cfgmgr in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long directory path argument.
Published 2006-09-27 · Modified
7.2EPSS 0.005
CVE-2000-1216
Buffer overflow in portmir for AIX 4.3.0 allows local users to corrupt lock files and gain root privileges via the echo_error routine.
Published 2005-04-21 · Modified
7.2EPSS 0.005
CVE-1999-1013
named-xfer in AIX 4.1.5 and 4.2.1 allows members of the system group to overwrite system files to gain root access via the -f parameter and a malformed zone file.
Published 2001-09-12 · Modified
7.2EPSS 0.005
CVE-2007-3680
Stack-based buffer overflow in the odm_searchpath function in libodm in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary code via a long ODMPATH environment variable.
Published 2007-07-11 · Modified
7.2EPSS 0.005
CVE-2007-1798
Buffer overflow in the drmgr command in IBM AIX 5.2 and 5.3 allows local users to cause a denial of service (crash) and possibly execute arbitrary code via a long path name.
Published 2007-04-02 · Modified
7.2EPSS 0.005
CVE-1999-0055
Buffer overflows in Sun libnsl allow root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2004-1028
Untrusted execution path vulnerability in chcod on AIX IBM 5.1.0, 5.2.0, and 5.3.0 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious "grep" program, which is executed from chcod.
Published 2004-12-22 · Modified
7.2EPSS 0.004
CVE-2000-1123
Buffer overflow in pioout command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands.
Published 2001-05-07 · Modified
7.2EPSS 0.004
CVE-2000-1122
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
Published 2001-05-07 · Modified
7.2EPSS 0.004
CVE-2006-1246
Unspecified vulnerability in mklvcopy in BOS.RTE.LVM in IBM AIX 5.3 allows local users to execute arbitrary commands when mklvcopy calls external commands, possibly due to an untrusted search path vulnerability.
Published 2006-03-17 · Modified
7.2EPSS 0.004
CVE-2000-0466
AIX cdmount allows local users to gain root privileges via shell metacharacters.
Published 2000-10-13 · Modified
7.2EPSS 0.004
CVE-2006-5009
Unspecified vulnerability in xlock in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands and overwrite arbitrary files via unspecified vectors, possibly involving a buffer overflow.
Published 2006-09-27 · Modified
7.2EPSS 0.004
CVE-2001-1330
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
Published 2002-05-03 · Modified
7.2EPSS 0.004
CVE-2001-1329
Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument.
Published 2002-05-03 · Modified
7.2EPSS 0.004
CVE-2006-5010
Untrusted search path vulnerability in acctctl in IBM AIX 5.3.0 allows local users to execute arbitrary commands by modifying the path to point to a malicious mkdir program.
Published 2006-09-27 · Modified
7.2EPSS 0.004
CVE-2003-0954
Buffer overflow in rcp for AIX 4.3.3, 5.1 and 5.2 allows local users to gain privileges.
Published 2005-04-14 · Modified
7.2EPSS 0.004
CVE-2006-5005
Unspecified vulnerability in bos.net.tcp.client in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors involving /etc/slip.login.
Published 2006-09-27 · Modified
7.2EPSS 0.004
CVE-1999-0093
AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2002-1548
Unknown vulnerability in autofs on AIX 4.3.0, when using executable maps, allows attackers to execute arbitrary commands as root, possibly related to "string handling around how the executable map is called."
Published 2004-09-01 · Modified
7.2EPSS 0.004
CVE-2006-4416
Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point to a malicious (1) chdev, (2) mkboot, (3) varyonvg, or (4) varyoffvg program.
Published 2006-08-28 · Modified
7.2EPSS 0.004
CVE-2009-1355
Stack-based buffer overflow in muxatmd in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via a long filename.
Published 2009-04-21 · Modified
7.2EPSS 0.004
CVE-2008-0586
Multiple buffer overflows in IBM AIX 5.2 and 5.3 allow local users to gain privileges via unspecified vectors related to the (1) lchangevg, (2) ldeletepv, (3) putlvodm, (4) lvaryoffvg, and (5) lvgenminor programs in bos.rte.lvm; and the (6) tellclvmd program in bos.clvm.enh.
Published 2008-02-05 · Modified
7.2EPSS 0.004
CVE-2006-5003
Unspecified vulnerability in the named8 command in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via unspecified vectors.
Published 2006-09-27 · Modified
7.2EPSS 0.004
CVE-2007-4217
Stack-based buffer overflow in the domacro function in ftp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via a long parameter to a macro, as demonstrated by executing a macro via the '$' command.
Published 2007-11-05 · Modified
7.2EPSS 0.004
CVE-2001-0533
Buffer overflow in libi18n library in IBM AIX 5.1 and 4.3.x allows local users to gain root privileges via a long LANG environmental variable.
Published 2002-03-09 · Modified
7.2EPSS 0.004
CVE-1999-0090
Buffer overflow in AIX rcp command allows local users to obtain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0072
Buffer overflow in AIX xdat gives root access to local users.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0089
Buffer overflow in AIX libDtSvc library can allow local users to gain root access.
Published 2000-02-04 · Modified
7.2EPSS 0.004
CVE-1999-0091
Buffer overflow in AIX writesrv command allows local users to obtain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0117
AIX passwd allows local users to gain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0338
AIX Licensed Program Product performance tools allow local users to gain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2006-4522
Unspecified vulnerability in dtterm in IBM AIX 5.2 and 5.3 allows local users to execute arbitrary code with root privileges via unspecified vectors.
Published 2006-09-01 · Modified
7.2EPSS 0.004
CVE-2006-2647
Untrusted search path vulnerability in update_flash for IBM AIX 5.1, 5.2 and 5.3 allows local users to execute arbitrary commands via unknown vectors involving lsmcode and possibly other commands.
Published 2006-05-30 · Modified
7.2EPSS 0.004
CVE-2006-5011
Untrusted search path vulnerability in snappd in IBM AIX 5.2.0 and 5.3.0 allows local users to execute arbitrary commands via a Trojan horse program, involving the "system subroutine".
Published 2006-09-27 · Modified
7.2EPSS 0.004
CVE-2011-1222
Buffer overflow in the Journal Based Backup (JBB) feature in the backup-archive client in IBM Tivoli Storage Manager (TSM) before 5.4.3.4, 5.5.x before 5.5.3, 6.x before 6.1.4, and 6.2.x before 6.2.2 on Windows and AIX allows local users to gain privileges via unspecified vectors.
Published 2011-07-17 · Modified
7.2EPSS 0.004
CVE-2012-0745
The getpwnam function in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.1.0.10 through 2.2.1.3 does not properly interact with customer-extended LDAP user filtering, which allows local users to gain privileges via unspecified vectors.
Published 2012-05-04 · Modified
7.2EPSS 0.004
CVE-2008-4018
swcons in bos.rte.console in IBM AIX 5.2.0 through 6.1.1 allows local users in the system group to create or overwrite an arbitrary file, and establish weak permissions and root ownership for this file, via unspecified vectors. NOTE: this can be leveraged to gain privileges. NOTE: this issue exists because of an incomplete fix for CVE-2007-5805.
Published 2008-09-10 · Modified
7.2EPSS 0.004
CVE-2008-1596
Trusted Execution in IBM AIX 6.1 uses an incorrect pathname argument in a call to the trustchk_block_write function, which might allow local users to modify trusted files, related to missing checks in the TSD_FILES_LOCK policy for modifications performed via hard links, a different vulnerability than CVE-2007-6680.
Published 2008-03-31 · Modified
7.2EPSS 0.004
CVE-2005-0240
Format string vulnerability in chdev on IBM AIX 5.2 allows local users to execute arbitrary code via format string specifiers in a command line argument, which is not properly handled when printing an error message.
Published 2005-02-07 · Modified
7.2EPSS 0.004
← Prev12 / 25Next →