PT-2010-4795 · Ibm · Vios+1
Published
2010-09-16
·
Updated
2018-11-28
·
CVE-2010-3405
CVSS v2.0
6.8
Medium
| Vector | AV:L/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM AIX versions 6.1, 5.3, and earlier
VIOS versions 2.1, 1.5, and earlier
Description
A buffer overflow issue exists in the sa snap component of the bos.esagent fileset, allowing local users who are members of the system group to gain privileges. The issue can be exploited via unspecified vectors.
Recommendations
For IBM AIX versions 6.1, 5.3, and earlier, consider restricting system group membership to minimize the risk of exploitation.
For VIOS versions 2.1, 1.5, and earlier, consider restricting system group membership to minimize the risk of exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Aix
Vios