Vulnerability Name: | CVE-2010-0961 (CCN-56854) | ||||||||
Assigned: | 2010-03-08 | ||||||||
Published: | 2010-03-08 | ||||||||
Updated: | 2017-09-19 | ||||||||
Summary: | Buffer overflow in qoslist in bos.net.tcp.server in IBM AIX 6.1 and VIOS 2.1 allows local users to gain privileges via unspecified vectors. | ||||||||
CVSS v3 Severity: | 4.2 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:U/C:L/I:L/A:L)
| ||||||||
CVSS v2 Severity: | 7.2 High (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C) 5.3 Medium (Temporal CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C/E:U/RL:OF/RC:C)
3.0 Low (CCN Temporal CVSS v2 Vector: AV:L/AC:M/Au:S/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||
Vulnerability Type: | CWE-119 | ||||||||
Vulnerability Consequences: | Gain Access | ||||||||
References: | Source: CONFIRM Type: UNKNOWN http://aix.software.ibm.com/aix/efixes/security/qoslist_advisory.asc Source: MITRE Type: CNA CVE-2010-0961 Source: CCN Type: SECTRACK ID: 1023694 IBM AIX Buffer Overflow in qoslist Command Lets Local Users Gain Elevated Privileges Source: SECTRACK Type: UNKNOWN 1023694 Source: CCN Type: IBM APAR IZ68194 QOSLIST GENERATING SEGMENTATION FAULT APPLIES TO AIX Source: CCN Type: IBM APAR IZ71554 QOSLIST GENERATING SEGMENTATION FAULT Source: CCN Type: IBM APAR IZ71590 QOSLIST GENERATING SEGMENTATION FAULT Source: CCN Type: IBM APAR IZ71869 QOSLIST GENERATING SEGMENTATION FAULT Source: AIXAPAR Type: Vendor Advisory IZ68194 Source: AIXAPAR Type: Vendor Advisory IZ71554 Source: AIXAPAR Type: Vendor Advisory IZ71590 Source: AIXAPAR Type: Vendor Advisory IZ71869 Source: CCN Type: OSVDB ID: 62908 IBM AIX bos.net.tcp.server qoslist Local Overflow Source: VUPEN Type: Vendor Advisory ADV-2010-0556 Source: XF Type: UNKNOWN ibm-aix-qoslist-bo(56854) Source: OVAL Type: UNKNOWN oval:org.mitre.oval:def:12051 | ||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||
Oval Definitions | |||||||||
| |||||||||
BACK |