QID 330127

Date Published: 2023-03-08

QID 330127: IBM AIX smcd daemon Denial of Service (DoS) Vulnerability (smbcd_advisory2)

AIX is vulnerable to a denial of service due to the AIX SMB client (CVE-2022-43381)

Affected Platform:
AIX 7.1,7.2,7.3
QID Detection Logic (Authenticated):
The detection checks for installed packages version via command : lslpp -L | grep -i smbc.rte The detection posts vulnerable if installed package version is less than patched version

Successful exploitation of the vulnerability smcd daemon could cause denial of service

  • CVSS V3 rated as High - 6.2 severity.
  • CVSS V2 rated as Low - 2.1 severity.
  • Solution
    The vendor has released fixes to resolve this vulnerability. Refer to smbcd_advisory2 to obtain more information.

    CVEs related to QID 330127

    Software Advisories
    Advisory ID Software Component Link
    smbcd_advisory2 URL Logo aix.software.ibm.com/aix/efixes/security/smbcd_advisory2.asc