IT, Cloud & DevOps Blog

IBM AIX 7.2 — CVE-2001-1557 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2001-1557 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 16 July 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2001-1557, IBM Support Bulletin CVE: CVE-2001-1557 NVD summary: Buffer overflow in ftpd in IBM AIX 4.3 and 5.1 allows attackers to gain privileges. References: www-1.ibm.com/support/search.wss?rs=0&q=IY20486&   www-1.ibm.com/support/search.wss?rs=0&q=IY23674&   www-1.ibm.com/support/search.wss?rs=0&q=IY20486& Table of contents […]

Read more
SLES 12 — ruby2.1-rubygem-archive-tar-minitar — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — ruby2.1-rubygem-archive-tar-minitar — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 15 July 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2021:0115-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-10173 Upstream summary: Directory traversal vulnerability in the minitar before 0.6 and archive-tar-minitar 0.5.2 gems for Ruby allows remote attackers to write to arbitrary files […]

Read more
IBM AIX 7.2 — CVE-1999-0694 — denial of service — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0694 — denial of service — patch and remediation guide

🟢 Low   ⏱ 10–30 min  Last verified: 13 July 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0694, IBM PSIRT advisory page CVE: CVE-1999-0694 NVD summary: Denial of service in AIX ptrace system call allows local users to crash the system. References: www.ciac.org/ciac/bulletins/j-055.shtml   www.ciac.org/ciac/bulletins/j-055.shtml Table of contents Symptom […]

Read more
Ubuntu 14.04 — icedtea-web — multiple vulnerabilities (2 CVEs) — patch and remediation guide — diagnosis and fix on Ubuntu 14.04

Ubuntu 14.04 — icedtea-web — multiple vulnerabilities (2 CVEs) — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 12 July 2016 Affected versions: Ubuntu 14.04 (trusty) 📖 ~4 min read  •  Source: Ubuntu Security Notice USN-2817-1 Related CVEs: CVE-2015-5234 CVE-2015-5235 Upstream summary: It was discovered that IcedTea Web incorrectly handled applet URLs. A remote attacker could possibly use this issue to inject applets into the […]

Read more
IBM AIX 7.2 — CVE-1999-0745 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0745 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 11 July 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0745, IBM PSIRT advisory page CVE: CVE-1999-0745 NVD summary: Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler. References: www.ciac.org/ciac/bulletins/j-059.shtml   […]

Read more
IBM AIX 7.2 — CVE-2016-3053 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2016-3053 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 10 July 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2016-3053, IBM Support Bulletin CVE: CVE-2016-3053 NVD summary: IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. References: aix.software.ibm.com/aix/efixes/security/lsmcode   www.securityfocus.com/bid/93605   www.securitytracker.com/id/1037030 […]

Read more
CHAT