PT-2005-4194 · Ibm · Aix
Lone Rider Knight
·
Published
2005-11-01
·
Updated
2017-10-11
·
CVE-2005-3396
CVSS v2.0
7.5
High
| Vector | AV:N/AC:L/Au:N/C:P/I:P/A:P |
Name of the Vulnerable Software and Affected Versions
IBM AIX versions 5.2 through 5.3
Description
A buffer overflow issue exists in the chcons (chcon) command when DEBUG MALLOC is enabled. This could potentially allow attackers to execute arbitrary code by providing a long command line argument.
Recommendations
For IBM AIX versions 5.2 through 5.3, consider disabling the DEBUG MALLOC feature as a temporary workaround to minimize the risk of exploitation.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aix