Oval Definition:
oval:org.mitre.oval:def:20147
Revision Date
:
2014-01-20
Version
:
15
Title
:
Vulnerability in LDAP Authentication
Description
:
The getpwnam function in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.1.0.10 through 2.2.1.3 does not properly interact with customer-extended LDAP user filtering, which allows local users to gain privileges via unspecified vectors.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2012-0745
Platform(s)
:
IBM AIX 6.1
IBM AIX 7.1
Product(s)
:
Definition Synopsis
platforms
IBM AIX 6.1 is installed
OR
IBM AIX 7.1 is installed
AND
filesets
File Version Exists
bos.rte.security greater than or equal 5.3.12.0
AND
bos.rte.security less than or equal 5.3.12.4
OR
File Version Exists
bos.rte.security greater than or equal 6.1.5.0
AND
bos.rte.security less than or equal 6.1.5.7
OR
File Version Exists
bos.rte.security greater than or equal 6.1.6.0
AND
bos.rte.security less than or equal 6.1.6.17
OR
File Version Exists
bos.rte.security greater than or equal 6.1.7.0
AND
bos.rte.security less than or equal 6.1.7.2
OR
File Version Exists
bos.rte.security greater than or equal 7.1.0.0
AND
bos.rte.security less than or equal 7.1.0.17
OR
File Version Exists
bos.rte.security greater than or equal 7.1.1.0
AND
bos.rte.security less than or equal 7.1.1.2
BACK