Oval Definition:
oval:org.mitre.oval:def:12051
Revision Date
:
2011-01-10
Version
:
13
Title
:
AIX qoslist buffer overflow vulnerability.
Description
:
Buffer overflow in qoslist in bos.net.tcp.server in IBM AIX 6.1 and VIOS 2.1 allows local users to gain privileges via unspecified vectors.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2010-0961
Platform(s)
:
IBM AIX 6.1
Product(s)
:
Definition Synopsis
IBM AIX 6100-01 meets CVE-2010-0961
IBM AIX 6100-01 is installed
AND
Fileset bos.net.tcp.server is less than or equal 6.1.1.7
AND
Fileset bos.net.tcp.server is greater than or equal 6.1.1.0
AND
NOT
All filesets for APAR IZ71869 are installed
OR
IBM AIX 6100-02 meets CVE-2010-0961
IBM AIX 6100-02 is installed
AND
Fileset bos.net.tcp.server is greater than or equal 6.1.2.0
AND
Fileset bos.net.tcp.server is less than or equal 6.1.2.4
AND
NOT
All filesets for APAR IZ71590 are installed
OR
IBM AIX 6100-03 meets CVE-2010-0961
IBM AIX 6100-03 is installed
AND
Fileset bos.net.tcp.server is greater than or equal 6.1.3.0
AND
Fileset bos.net.tcp.server is less than or equal 6.1.3.2
AND
NOT
All filesets for APAR IZ71554 are installed
OR
IBM AIX 6100-04 meets CVE-2010-0961
IBM AIX 6100-04 is installed
AND
Fileset bos.net.tcp.server is greater than or equal 6.1.4.0
AND
Fileset bos.net.tcp.server is less than or equal 6.1.4.1
AND
NOT
All filesets for APAR IZ68194 are installed
BACK