PT-2003-1357 · Ibm · Aixterm+2
Euan Briggs
·
Published
2003-03-03
·
Updated
2017-10-10
·
CVE-2003-0087
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
AIX versions 4.3 through 5.2
Description
A buffer overflow issue exists in the libIM library for National Language Support on AIX. This allows local users to potentially gain privileges through various attack vectors, including the use of a long -im argument to aixterm.
Recommendations
For AIX versions 4.3 through 5.2, consider restricting access to the aixterm command and limiting the use of the -im argument to prevent potential exploitation of the buffer overflow issue in the libIM library.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aix
Aixterm
Libim