CVE-2008-2514
https://notcve.org/view.php?id=CVE-2008-2514
Buffer overflow in errpt in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via unknown attack vectors. Un desbordamiento de búfer en errpt en IBM AIX versiones 5.2, 5.3 y 6.1, permite a los usuarios locales alcanzar privilegios por medio de vectores de ataque desconocidos. • http://aix.software.ibm.com/aix/efixes/security/errpt_advisory.asc http://secunia.com/advisories/30349 http://securitytracker.com/id?1020084 http://www.ibm.com/support/docview.wss?uid=isg1IZ19905 http://www.ibm.com/support/docview.wss?uid=isg1IZ21494 http://www.ibm.com/support/docview.wss?uid=isg1IZ22346 http://www.ibm.com/support/docview.wss? • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2008-2513
https://notcve.org/view.php?id=CVE-2008-2513
Buffer overflow in the kernel in IBM AIX 5.2, 5.3, and 6.1 allows local users to execute arbitrary code in kernel mode via unknown attack vectors. Un desbordamiento de búfer en el kernel en IBM AIX versiones 5.2, 5.3 y 6.1, permite a los usuarios locales ejecutar código arbitrario en modo kernel por medio de vectores de ataque desconocidos. • http://aix.software.ibm.com/aix/efixes/security/unix_advisory.asc http://secunia.com/advisories/30349 http://securitytracker.com/id?1020083 http://www.ibm.com/support/docview.wss?uid=isg1IZ19911 http://www.ibm.com/support/docview.wss?uid=isg1IZ21481 http://www.ibm.com/support/docview.wss?uid=isg1IZ22368 http://www.ibm.com/support/docview.wss? • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •
CVE-2008-2515
https://notcve.org/view.php?id=CVE-2008-2515
Unspecified vulnerability in iostat in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via unknown vectors related to an "environment variable handling error." Una vulnerabilidad no especificada en iostat en IBM AIX versiones 5.2, 5.3 y 6.1 permite a los usuarios locales alcanzar privilegios por medio de vectores desconocidos relacionados con un "environment variable handling error." • http://aix.software.ibm.com/aix/efixes/security/iostat_advisory.asc http://secunia.com/advisories/30349 http://securitytracker.com/id?1020085 http://www.ibm.com/support/docview.wss?uid=isg1IZ20635 http://www.ibm.com/support/docview.wss?uid=isg1IZ21506 http://www.ibm.com/support/docview.wss?uid=isg1IZ22349 http://www.ibm.com/support/docview.wss? • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2008-1599
https://notcve.org/view.php?id=CVE-2008-1599
The nddstat programs on IBM AIX 5.2, 5.3, and 6.1 do not properly handle environment variables, which allows local users to gain privileges by invoking (1) atmstat, (2) entstat, (3) fddistat, (4) hdlcstat, or (5) tokstat. Los programas nddstat de IBM AIX 5.2, 5.3 y 6.1 no manipulan adecuadamente variables de entorno, lo que permite a usuarios locales obtener privilegios invocando (1) atmstat, (2) entstat, (3) fddistat, (4) hdlcstat, o (5) tokstat. • http://securitytracker.com/id?1019604 http://www.ibm.com/support/docview.wss?uid=isg1IZ16975 http://www.ibm.com/support/docview.wss?uid=isg1IZ16991 http://www.ibm.com/support/docview.wss?uid=isg1IZ17058 http://www.ibm.com/support/docview.wss? • CWE-264: Permissions, Privileges, and Access Controls •
CVE-2008-1593
https://notcve.org/view.php?id=CVE-2008-1593
The checkpoint and restart feature in the kernel in IBM AIX 5.2, 5.3, and 6.1 does not properly protect kernel memory, which allows local users to read and modify portions of memory and gain privileges via unspecified vectors involving a restart of a 64-bit process, probably related to the as_getadsp64 function. La característica de checkpoint (punto de comprobación) y restart (reinicio) en el kernel de IBM AIX 5.2, 5.3 y 6.1 no protege adecuadamente la memoria del kernel, lo que permite a usuarios locales leer y modificar porciones de memoria y obtener privilegios a través de vectores no especificados que implican un reinicio de un proceso de 64 bits, probablemente relacionado con la función as_getadsp64. • http://securitytracker.com/id?1019606 http://www.ibm.com/support/docview.wss?uid=isg1IZ11820 http://www.ibm.com/support/docview.wss?uid=isg1IZ12794 http://www.ibm.com/support/docview.wss?uid=isg1IZ16992 http://www.ibm.com/support/docview.wss? • CWE-264: Permissions, Privileges, and Access Controls •