Vulnerabilities > CVE-2004-0544 - Buffer Overflow vulnerability in IBM AIX 4.3.3/5.1/5.2

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
ibm
nessus
exploit available

Summary

Multiple buffer overflows in LVM for AIX 5.1 and 5.2 allow local users to gain privileges via the (1) putlvcb or (2) getlvcb commands.

Vulnerable Configurations

Part Description Count
OS
Ibm
3

Exploit-Db

  • descriptionAIX 4.3.3/5.x Getlvcb Command Line Argument Buffer Overflow Vulnerability (2). CVE-2004-0544. Local exploit for aix platform
    idEDB-ID:23841
    last seen2016-02-02
    modified2004-03-17
    published2004-03-17
    reportermattox
    sourcehttps://www.exploit-db.com/download/23841/
    titleAIX 4.3.3/5.x Getlvcb Command Line Argument Buffer Overflow Vulnerability 2
  • descriptionAIX 4.3.3/5.x Getlvcb Command Line Argument Buffer Overflow Vulnerability (1). CVE-2004-0544. Local exploit for aix platform
    idEDB-ID:23840
    last seen2016-02-02
    modified2003-05-30
    published2003-05-30
    reporterwatercloud
    sourcehttps://www.exploit-db.com/download/23840/
    titleAIX 4.3.3/5.x Getlvcb Command Line Argument Buffer Overflow Vulnerability 1

Nessus

  • NASL familyAIX Local Security Checks
    NASL idAIX_IY55682.NASL
    descriptionThe remote host is missing AIX Critical Security Patch number IY55682 (SECURITY: Possible buffer overflow in putlvcb command). You should install this patch for your system to be up-to-date.
    last seen2020-06-01
    modified2020-06-02
    plugin id14437
    published2004-08-27
    reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14437
    titleAIX 5.2 : IY55682
  • NASL familyAIX Local Security Checks
    NASL idAIX_IY55681.NASL
    descriptionThe remote host is missing AIX Critical Security Patch number IY55681 (SECURITY: Possible buffer overflow in putlvcb command). You should install this patch for your system to be up-to-date.
    last seen2020-06-01
    modified2020-06-02
    plugin id14622
    published2004-09-01
    reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14622
    titleAIX 5.1 : IY55681