Lucene search

K
cveIbmCVE-2014-0930
HistoryMay 08, 2014 - 10:55 a.m.

CVE-2014-0930

2014-05-0810:55:03
ibm
web.nvd.nist.gov
37
ibm aix
vios
ptrace system call
denial of service
vulnerability
cve-2014-0930
nvd

CVSS2

4.7

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

AI Score

5.7

Confidence

Low

EPSS

0

Percentile

5.1%

The ptrace system call in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.x, allows local users to cause a denial of service (system crash) or obtain sensitive information from kernel memory via a crafted PT_LDINFO operation.

Affected configurations

Nvd
Node
ibmviosMatch2.2.0.10
OR
ibmviosMatch2.2.0.11
OR
ibmviosMatch2.2.0.12
OR
ibmviosMatch2.2.0.13
OR
ibmviosMatch2.2.1.0
OR
ibmviosMatch2.2.1.1
OR
ibmviosMatch2.2.1.3
OR
ibmviosMatch2.2.1.4
OR
ibmviosMatch2.2.2.0
OR
ibmviosMatch2.2.3.0
OR
ibmaixMatch5.3
OR
ibmaixMatch6.1
OR
ibmaixMatch7.1
VendorProductVersionCPE
ibmvios2.2.0.10cpe:2.3:a:ibm:vios:2.2.0.10:*:*:*:*:*:*:*
ibmvios2.2.0.11cpe:2.3:a:ibm:vios:2.2.0.11:*:*:*:*:*:*:*
ibmvios2.2.0.12cpe:2.3:a:ibm:vios:2.2.0.12:*:*:*:*:*:*:*
ibmvios2.2.0.13cpe:2.3:a:ibm:vios:2.2.0.13:*:*:*:*:*:*:*
ibmvios2.2.1.0cpe:2.3:a:ibm:vios:2.2.1.0:*:*:*:*:*:*:*
ibmvios2.2.1.1cpe:2.3:a:ibm:vios:2.2.1.1:*:*:*:*:*:*:*
ibmvios2.2.1.3cpe:2.3:a:ibm:vios:2.2.1.3:*:*:*:*:*:*:*
ibmvios2.2.1.4cpe:2.3:a:ibm:vios:2.2.1.4:*:*:*:*:*:*:*
ibmvios2.2.2.0cpe:2.3:a:ibm:vios:2.2.2.0:*:*:*:*:*:*:*
ibmvios2.2.3.0cpe:2.3:a:ibm:vios:2.2.3.0:*:*:*:*:*:*:*
Rows per page:
1-10 of 131

CVSS2

4.7

Attack Vector

LOCAL

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

COMPLETE

AV:L/AC:M/Au:N/C:N/I:N/A:C

AI Score

5.7

Confidence

Low

EPSS

0

Percentile

5.1%