Unix

IBM AIX 7.1 — CVE-2022-43917 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.1

IBM AIX 7.1 — CVE-2022-43917 — vulnerability — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 8 July 2022 Affected versions: IBM AIX 7.1 📖 ~4 min read  •  Source: NVD CVE-2022-43917, IBM Support Bulletin CVE: CVE-2022-43917 NVD summary: IBM WebSphere Application Server 8.5 and 9.0 traditional container uses weaker than expected cryptographic keys that could allow an attacker to decrypt sensitive information. […]

Read more
IBM AIX 7.3 — CVE-2022-43578 — xss — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2022-43578 — xss — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 8 July 2022 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2022-43578, IBM Support Bulletin CVE: CVE-2022-43578 NVD summary: IBM Sterling B2B Integrator Standard Edition 6.0.0.0 through 6.0.3.7 and 6.1.0.0 through 6.1.2.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed […]

Read more
IBM AIX 7.3 — CVE-2002-1551 — buffer overflow — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-2002-1551 — buffer overflow — patch and remediation guide

🟡 Medium   ⏱ 15–45 min  Last verified: 8 July 2022 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-2002-1551, IBM PSIRT advisory page CVE: CVE-2002-1551 NVD summary: Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code. References: archives.neohapsis.com/archives/aix/2002-q4/0002   […]

Read more
IBM AIX 7.3 — CVE-1999-0687 — vulnerability — patch and remediation guide — diagnosis and fix on IBM AIX 7.3

IBM AIX 7.3 — CVE-1999-0687 — vulnerability — patch and remediation guide

🟠 High   ⏱ 30–90 min  Last verified: 6 July 2022 Affected versions: IBM AIX 7.3 📖 ~4 min read  •  Source: NVD CVE-1999-0687, IBM PSIRT advisory page CVE: CVE-1999-0687 NVD summary: The ToolTalk ttsession daemon uses weak RPC authentication, which allows a remote attacker to execute commands. References: sunsolve.sun.com/pub-cgi/retrieve.pl?doctype=col   www.ciac.org/ciac/bulletins/k-001.shtml   www.securityfocus.com/bid/637 Table […]

Read more
CHAT