Lucene search

K
cveMitreCVE-2005-3396
HistoryNov 01, 2005 - 12:47 p.m.

CVE-2005-3396

2005-11-0112:47:00
mitre
web.nvd.nist.gov
27
cve-2005-3396
buffer overflow
ibm aix
debug malloc
arbitrary code execution

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.02

Percentile

88.9%

Buffer overflow in the chcons (chcon) command in IBM AIX 5.2 and 5.3, when DEBUG MALLOC is enabled, might allow attackers to execute arbitrary code via a long command line argument.

Affected configurations

Nvd
Node
ibmaixMatch5.1
OR
ibmaixMatch5.1l
OR
ibmaixMatch5.2
OR
ibmaixMatch5.2.2
OR
ibmaixMatch5.2_l
OR
ibmaixMatch5.3
OR
ibmaixMatch5.3_l
VendorProductVersionCPE
ibmaix5.1cpe:2.3:o:ibm:aix:5.1:*:*:*:*:*:*:*
ibmaix5.1lcpe:2.3:o:ibm:aix:5.1l:*:*:*:*:*:*:*
ibmaix5.2cpe:2.3:o:ibm:aix:5.2:*:*:*:*:*:*:*
ibmaix5.2.2cpe:2.3:o:ibm:aix:5.2.2:*:*:*:*:*:*:*
ibmaix5.2_lcpe:2.3:o:ibm:aix:5.2_l:*:*:*:*:*:*:*
ibmaix5.3cpe:2.3:o:ibm:aix:5.3:*:*:*:*:*:*:*
ibmaix5.3_lcpe:2.3:o:ibm:aix:5.3_l:*:*:*:*:*:*:*

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

7.6

Confidence

Low

EPSS

0.02

Percentile

88.9%

Related for CVE-2005-3396