chris

IBM AIX 7.2 — CVE-2003-0694 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2003-0694 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 30 December 2015 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2003-0694, IBM PSIRT advisory page CVE: CVE-2003-0694 NVD summary: The prescan function in Sendmail 8.12.9 allows remote attackers to execute arbitrary code via buffer overflow attacks, as demonstrated using the parseaddr function […]

Read more
IBM AIX 7.2 — CVE-2003-0285 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2003-0285 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 29 December 2015 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2003-0285, IBM PSIRT advisory page CVE: CVE-2003-0285 NVD summary: IBM AIX 5.2 and earlier distributes Sendmail with a configuration file (sendmail.cf) with the (1) promiscuous_relay, (2) accept_unresolvable_domains, and (3) accept_unqualified_senders features enabled, […]

Read more
IBM AIX 7.2 — CVE-2001-1329 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2001-1329 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 28 December 2015 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2001-1329, IBM PSIRT advisory page CVE: CVE-2001-1329 NVD summary: Buffer overflow in rsh on AIX 4.2.0.0 may allow local users to gain root privileges via a long command line argument. References: archives.neohapsis.com/archives/bugtraq/2001-06/ […]

Read more
SLES 12 — libxcb1 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libxcb1 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 26 December 2015 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2013:1096-1 (see also SUSE bugzilla) Related CVEs: CVE-2013-2064 Upstream summary: Integer overflow in X.org libxcb 1.9 and earlier allows X servers to trigger allocation of insufficient memory and a buffer overflow via […]

Read more
SLES 12 — kernel-azure — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — kernel-azure — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 25 December 2015 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2019:1527-1 (see also SUSE bugzilla) Related CVEs: CVE-2013-4343 Upstream summary: Use-after-free vulnerability in drivers/net/tun.c in the Linux kernel through 3.11.1 allows local users to gain privileges by leveraging the CAP_NET_ADMIN capability and […]

Read more
IBM AIX 7.2 — CVE-2008-7288 — denial of service — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2008-7288 — denial of service — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 24 December 2015 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2008-7288, IBM Support Bulletin CVE: CVE-2008-7288 NVD summary: IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 on AIX allows remote attackers to cause a denial of service (server destabilization) via an anonymous […]

Read more
IBM AIX 7.2 — CVE-1999-1121 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-1121 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 22 December 2015 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-1121, IBM PSIRT advisory page CVE: CVE-1999-1121 NVD summary: The default configuration for UUCP in AIX before 3.2 allows local users to gain root privileges. References: www.cert.org/advisories/CA-1992-06.html   www.osvdb.org/891   www.securityfocus.com/bid/38 Table […]

Read more
CHAT