CVSS2
Attack Vector
LOCAL
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:L/AC:L/Au:N/C:C/I:C/A:C
AI Score
Confidence
Low
EPSS
Percentile
10.1%
The runtime linker in IBM AIX 6.1 and 7.1 and VIOS 2.2.x allows local users to create a mode-666 root-owned file, and consequently gain privileges, by setting crafted MALLOCOPTIONS and MALLOCBUCKETS environment-variable values and then executing a setuid program.
Vendor | Product | Version | CPE |
---|---|---|---|
ibm | vios | 2.2.0.10 | cpe:2.3:a:ibm:vios:2.2.0.10:*:*:*:*:*:*:* |
ibm | vios | 2.2.0.11 | cpe:2.3:a:ibm:vios:2.2.0.11:*:*:*:*:*:*:* |
ibm | vios | 2.2.0.12 | cpe:2.3:a:ibm:vios:2.2.0.12:*:*:*:*:*:*:* |
ibm | vios | 2.2.0.13 | cpe:2.3:a:ibm:vios:2.2.0.13:*:*:*:*:*:*:* |
ibm | vios | 2.2.1.0 | cpe:2.3:a:ibm:vios:2.2.1.0:*:*:*:*:*:*:* |
ibm | vios | 2.2.1.1 | cpe:2.3:a:ibm:vios:2.2.1.1:*:*:*:*:*:*:* |
ibm | vios | 2.2.1.3 | cpe:2.3:a:ibm:vios:2.2.1.3:*:*:*:*:*:*:* |
ibm | vios | 2.2.1.4 | cpe:2.3:a:ibm:vios:2.2.1.4:*:*:*:*:*:*:* |
ibm | vios | 2.2.1.4 | cpe:2.3:a:ibm:vios:2.2.1.4:fp-25_sp-02:*:*:*:*:*:* |
ibm | vios | 2.2.1.8 | cpe:2.3:a:ibm:vios:2.2.1.8:*:*:*:*:*:*:* |
aix.software.ibm.com/aix/efixes/security/malloc_advisory.asc
packetstormsecurity.com/files/127390/IBM-AIX-Runtime-Linker-Privilege-Escalation.html
seclists.org/fulldisclosure/2014/Jul/31
secunia.com/advisories/59344
www.ibm.com/support/docview.wss?uid=isg1IV60935
www.ibm.com/support/docview.wss?uid=isg1IV60940
www.ibm.com/support/docview.wss?uid=isg1IV61311
www.ibm.com/support/docview.wss?uid=isg1IV61313
www.ibm.com/support/docview.wss?uid=isg1IV61314
www.ibm.com/support/docview.wss?uid=isg1IV61315
www.securityfocus.com/archive/1/532689/100/0/threaded
www.securityfocus.com/bid/68296
www.securitytracker.com/id/1030504
exchange.xforce.ibmcloud.com/vulnerabilities/93816
www.portcullis-security.com/security-research-and-downloads/security-advisories/cve-2014-3074/