IBM AIX UUQ Buffer Overflow Vulnerability
BID:8801
Info
IBM AIX UUQ Buffer Overflow Vulnerability
| Bugtraq ID: | 8801 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Oct 05 2001 12:00AM |
| Updated: | Oct 05 2001 12:00AM |
| Credit: | This vulnerability was disclosed in a vendor advisory. |
| Vulnerable: |
IBM AIX 5.1 |
| Not Vulnerable: | |
Discussion
IBM AIX UUQ Buffer Overflow Vulnerability
uuq has been reported prone to a buffer overflow condition that is reported to present itself when an argument of excessive size is passed to the affected binary. The issue is likely due to a lack of sufficient bounds checking performed on user supplied '-r' parameters before the data is copied into an insufficient reserved buffer in memory.
A local attacker may exploit this condition to corrupt memory that is adjacent to the affected buffer.
uuq has been reported prone to a buffer overflow condition that is reported to present itself when an argument of excessive size is passed to the affected binary. The issue is likely due to a lack of sufficient bounds checking performed on user supplied '-r' parameters before the data is copied into an insufficient reserved buffer in memory.
A local attacker may exploit this condition to corrupt memory that is adjacent to the affected buffer.