Lucene search

K
cvelistIbmCVELIST:CVE-2022-43382
HistoryDec 20, 2022 - 8:11 p.m.

CVE-2022-43382 IBM AIX denial of service

2022-12-2020:11:47
CWE-399
ibm
www.cve.org
9
ibm
aix
local user
privilege escalation
denial of service
vulnerability
lpd daemon

CVSS3

6.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.2

Confidence

High

EPSS

0

Percentile

5.1%

IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1could allow a local user with elevated privileges to exploit a vulnerability in the lpd daemon to cause a denial of service. IBM X-Force ID: 238641.

CNA Affected

[
  {
    "defaultStatus": "unaffected",
    "product": "AIX",
    "vendor": "IBM",
    "versions": [
      {
        "status": "affected",
        "version": "7.1, 7.2, 7.3, VIOS 3.1"
      }
    ]
  }
]

CVSS3

6.2

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.2

Confidence

High

EPSS

0

Percentile

5.1%

Related for CVELIST:CVE-2022-43382