IT, Cloud & DevOps Blog

IBM AIX 7.2 — CVE-2010-3187 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2010-3187 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 7 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2010-3187, IBM Support Bulletin CVE: CVE-2010-3187 NVD summary: Buffer overflow in ftpd in IBM AIX 5.3 and earlier allows remote attackers to execute arbitrary code via a long NLST command. References: aix.software.ibm.com/aix/efixes/security/ftpd_ad […]

Read more
IBM AIX 7.2 — CVE-1999-0112 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0112 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 6 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0112, IBM PSIRT advisory page CVE: CVE-1999-0112 NVD summary: Buffer overflow in AIX dtterm program for the CDE. References: exchange.xforce.ibmcloud.com/vulnerabilities/878   exchange.xforce.ibmcloud.com/vulnerabilities/878 Table of contents Symptom & Impact Environment & Reproduction Root […]

Read more
IBM AIX 7.2 — CVE-2000-0080 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2000-0080 — vulnerability — patch and remediation guide

🟢 Low   ⏱ 10–30 min  Last verified: 4 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2000-0080, IBM PSIRT advisory page CVE: CVE-2000-0080 NVD summary: AIX techlibss allows local users to overwrite files via a symlink attack. References: marc.info/?l=bugtraq&m=94757136413681&w=2   www.securityfocus.com/bid/931   marc.info/?l=bugtraq&m=94757136413681&w=2 Table of contents Symptom & […]

Read more
IBM AIX 7.2 — CVE-1999-0011 — denial of service — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0011 — denial of service — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 4 May 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0011, IBM PSIRT advisory page CVE: CVE-1999-0011 NVD summary: Denial of Service vulnerabilities in BIND 4.9 and BIND 8 Releases via CNAME record and zone transfer. References: ftp://patches.sgi.com/support/free/security/advi   sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=col   www1.itrc.hp.com/service/cki/docDisplay.do?docId […]

Read more
SLES 12 — libXRes1 — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — libXRes1 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 1 May 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2013:1103-1 (see also SUSE bugzilla) Related CVEs: CVE-2013-1988 Upstream summary: Multiple integer overflows in X.org libXRes 1.0.6 and earlier allow X servers to trigger allocation of insufficient memory and a buffer overflow […]

Read more
IBM AIX 7.2 — CVE-1999-0117 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-1999-0117 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 30 April 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-1999-0117, IBM PSIRT advisory page CVE: CVE-1999-0117 NVD summary: AIX passwd allows local users to gain root access. References: exchange.xforce.ibmcloud.com/vulnerabilities/CVE   exchange.xforce.ibmcloud.com/vulnerabilities/CVE Table of contents Symptom & Impact Environment & Reproduction Root […]

Read more
IBM AIX 7.2 — CVE-2000-1120 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.2

IBM AIX 7.2 — CVE-2000-1120 — buffer overflow — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 30 April 2016 Affected versions: IBM AIX 7.2 📖 ~4 min read  •  Source: NVD CVE-2000-1120, IBM Support Bulletin CVE: CVE-2000-1120 NVD summary: Buffer overflow in digest command in IBM AIX 4.3.x and earlier allows local users to execute arbitrary commands. References: marc.info/?l=bugtraq&m=97569466809056&w=2   www-1.ibm.com/support/search.wss?rs=0&q=IY08143&   www-1.ibm.com/support/search.wss?rs=0&q=IY08287& […]

Read more
SLES 12 — guile — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — guile — vulnerability — patch and remediation guide

🟢 Low   ⏱ 5–15 min  Last verified: 30 April 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2017:0394-1 (see also SUSE bugzilla) Related CVEs: CVE-2016-8605 Upstream summary: The mkdir procedure of GNU Guile temporarily changed the process' umask to zero. During that time window, in a multithreaded application, other […]

Read more
SLES 12 — sblim-sfcb — vulnerability — patch and remediation guide — diagnosis and fix on SLES 12

SLES 12 — sblim-sfcb — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 10–30 min  Last verified: 29 April 2016 Affected versions: SLES 12 📖 ~4 min read  •  Source: SUSE advisory SUSE-SU-2015:2116-1 (see also SUSE bugzilla) Related CVEs: CVE-2015-5185 Upstream summary: The lookupProviders function in providerMgr.c in sblim-sfcb 1.3.4 and 1.3.18 allows remote attackers to cause a denial of service (NULL pointer dereference […]

Read more
CHAT