vendor:
AIX
by:
watercloud
7.2
CVSS
HIGH
Buffer Overflow
120
CWE
Product Name: AIX
Affected Version From: Aix4.3.3
Affected Version To: Aix4.3.3
Patch Exists: YES
Related CWE: N/A
CPE: o:ibm:aix:4.3.3
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: AIX
2003
Insufficient bounds checking in lsmcode utility
Insufficient bounds checking in the lsmcode utility will allow locally based attackers to cause memory to be corrupted with attacker-supplied data. As a result, it is possible to exploit this condition to execute arbitrary attacker-supplied instructions with elevated privileges.
Mitigation:
Ensure that the lsmcode utility is up to date and that all security patches are applied.