IBM AIX GetIPNodeByName API Socket Management Vulnerability
BID:8738
Info
IBM AIX GetIPNodeByName API Socket Management Vulnerability
| Bugtraq ID: | 8738 |
| Class: | Design Error |
| CVE: |
CVE-2003-0696 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 01 2003 12:00AM |
| Updated: | Jul 11 2009 11:56PM |
| Credit: | Vulnerability disclosed by IBM. |
| Vulnerable: |
IBM AIX 5.2 IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX GetIPNodeByName API Socket Management Vulnerability
A problem has been reported in the socket handling of IBM AIX. Because of this, an attacker may be able to crash an application on a vulnerable system.
Sendmail is known to use the vulnerable function on IBM AIX systems.
A problem has been reported in the socket handling of IBM AIX. Because of this, an attacker may be able to crash an application on a vulnerable system.
Sendmail is known to use the vulnerable function on IBM AIX systems.
Exploit / POC
IBM AIX GetIPNodeByName API Socket Management Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution / Fix
IBM AIX GetIPNodeByName API Socket Management Vulnerability
Solution:
IBM has released APARs to address this issue.
IBM AIX 5.1
IBM AIX 5.2
Solution:
IBM has released APARs to address this issue.
IBM AIX 5.1
IBM AIX 5.2
References
IBM AIX GetIPNodeByName API Socket Management Vulnerability
References:
References: