PT-2001-1737 · Ibm · Aix+1
Published
2001-08-14
·
Updated
2017-10-10
·
CVE-2001-0533
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
IBM AIX versions 4.3.x through 5.1
Description:
A buffer overflow issue in the libi18n library allows local users to gain root privileges by manipulating the LANG environmental variable.
Recommendations:
For IBM AIX versions 4.3.x through 5.1, update the libi18n library to prevent buffer overflow attacks. As a temporary workaround, consider restricting the ability to set long LANG environmental variables to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aix
Libi18N