VendorsIBMaix4.2
Vulnerabilities

IBM AIX 4.2

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

54CVEs
CVE-1999-0009
Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.290
CVE-1999-0003
Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
Published 1999-09-29 · Modified
10.02 PoCEPSS 0.246
CVE-2010-1039
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B.11.11, B.11.23, and B.11.31; and SGI IRIX 6.5 allows remote attackers to execute arbitrary code via an RPC request containing format string specifiers in an invalid directory name.
Published 2010-05-20 · Modified
10.01 PoCEPSS 0.202
CVE-2000-0844
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
Published 2001-01-22 · Modified
10.011 PoCEPSS 0.156
CVE-1999-0101
Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.
Published 2000-01-18 · Modified
10.01 PoCEPSS 0.078
CVE-1999-0011
Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer.
Published 1999-09-29 · Modified
10.0EPSS 0.055
CVE-1999-0097
The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g. a pipe character).
Published 1999-09-29 · Modified
10.0EPSS 0.040
CVE-1999-1405
snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.
Published 2001-09-12 · Modified
10.01 PoCEPSS 0.033
CVE-1999-0048
Talkd, when given corrupt DNS information, can be used to execute arbitrary commands with root privileges.
Published 1999-09-29 · Modified
10.0EPSS 0.031
CVE-1999-0038
Buffer overflow in xlock program allows local users to execute commands as root.
Published 1999-09-29 · Modified
8.42 PoCEPSS 0.013
CVE-1999-0022
Local user gains root privileges via buffer overflow in rdist, via expstr() function.
Published 1999-09-29 · Modified
7.8EPSS 0.005
CVE-1999-0041
Buffer overflow in NLS (Natural Language Service).
Published 1999-09-29 · Modified
7.52 PoCEPSS 0.091
CVE-1999-0085
Buffer overflow in rwhod on AIX and other operating systems allows remote attackers to execute arbitrary code via a UDP packet with a long hostname.
Published 1999-09-29 · Modified
7.5EPSS 0.039
CVE-1999-0687
The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands.
Published 2000-01-04 · Modified
7.5EPSS 0.022
CVE-1999-0017
FTP servers can allow an attacker to connect to arbitrary ports on machines other than the FTP client, aka FTP bounce.
Published 1999-09-29 · Modified
7.5EPSS 0.020
CVE-1999-0040
Buffer overflow in Xt library of X Windowing System allows local users to execute commands with root privileges.
Published 1999-09-29 · Modified
7.25 PoCEPSS 0.012
CVE-1999-0014
Unauthorized privileged access or denial of service via dtappgather program in CDE.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.012
CVE-1999-0122
Buffer overflow in AIX lchangelv gives root access.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.011
CVE-1999-0130
Local users can start Sendmail in daemon mode and gain root privileges.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.011
CVE-2000-1121
Buffer overflow in enq command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long -M argument.
Published 2001-05-07 · Modified
7.21 PoCEPSS 0.010
CVE-2000-1120
Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands.
Published 2001-01-22 · Modified
7.21 PoCEPSS 0.010
CVE-1999-0691
Buffer overflow in the AddSuLog function of the CDE dtaction utility allows local users to gain root privileges via a long user name.
Published 2000-01-04 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0112
Buffer overflow in AIX dtterm program for the CDE.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0023
Local user gains root privileges via buffer overflow in rdist, via lookup() function.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.008
CVE-1999-1208
Buffer overflow in ping in AIX 4.2 and earlier allows local users to gain root privileges via a long command line argument.
Published 2002-03-09 · Modified
7.21 PoCEPSS 0.008
CVE-1999-0064
Buffer overflow in AIX lquerylv program gives root access to local users.
Published 1999-09-29 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0118
AIX infod allows local users to gain root access through an X display.
Published 2000-06-02 · Modified
7.21 PoCEPSS 0.007
CVE-1999-0131
Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.
Published 1999-09-29 · Modified
7.2EPSS 0.006
CVE-1999-0055
Buffer overflows in Sun libnsl allow root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-2000-1122
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
Published 2001-05-07 · Modified
7.2EPSS 0.004
CVE-1999-0093
AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0072
Buffer overflow in AIX xdat gives root access to local users.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0090
Buffer overflow in AIX rcp command allows local users to obtain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-0091
Buffer overflow in AIX writesrv command allows local users to obtain root access.
Published 1999-09-29 · Modified
7.2EPSS 0.004
CVE-1999-1487
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
Published 2001-09-12 · Modified
7.2EPSS 0.004
CVE-1999-0128
Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.
Published 1999-09-29 · Modified
5.01 PoCEPSS 0.745
CVE-1999-0116
Denial of service when an attacker sends many SYN packets to create multiple connections without ever sending an ACK to complete the connection, aka SYN flood.
Published 1999-09-29 · Modified
5.01 PoCEPSS 0.056
CVE-1999-0024
DNS cache poisoning via BIND, by predictable query IDs.
Published 1999-09-29 · Modified
5.0EPSS 0.050
CVE-1999-0010
Denial of Service vulnerability in BIND 8 Releases via maliciously formatted DNS messages.
Published 1999-09-29 · Modified
5.0EPSS 0.024
CVE-1999-0086
AIX routed allows remote users to modify sensitive files.
Published 2000-02-04 · Modified
5.0EPSS 0.021
1 / 2Next →