QID 330123

Date Published: 2023-02-21

QID 330123: IBM AIX Buffer Overflow X11 Vulnerability

A vulnerability in X11 on AIX could allow a non-privileged local user to cause a buffer overflow that could result in a denial of service or arbitrary code execution (CVE-2022-47990).

Affected Versions:
AIX 7.1, 7.2,7.3

QID Detection logic:
This QID checks for the vulnerable versions of AIX.

IBM AIX could allow a non-privileged local user to exploit a vulnerability in X11 to cause a buffer overflow that could result in a denial of service or arbitrary code execution.

  • CVSS V3 rated as High - 7.8 severity.
  • CVSS V2 rated as High - 6.5 severity.
  • Solution
    The vendor has released fixes to resolve this vulnerability. Refer to AIX 6855827 to obtain more information.
    Vendor References

    CVEs related to QID 330123

    Software Advisories
    Advisory ID Software Component Link
    AIX 6855827 URL Logo www.ibm.com/support/pages/node/6855827