Vulnerabilities > CVE-2004-0545 - LVM Utilities Symbolic Link vulnerability in IBM AIX 5.1/5.2

047910
CVSS 7.2 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
local
low complexity
ibm
nessus

Summary

LVM for AIX 5.1 and 5.2 allows local users to overwrite arbitrary files via a symlink attack.

Vulnerable Configurations

Part Description Count
OS
Ibm
2

Nessus

  • NASL familyAIX Local Security Checks
    NASL idAIX_IY55682.NASL
    descriptionThe remote host is missing AIX Critical Security Patch number IY55682 (SECURITY: Possible buffer overflow in putlvcb command). You should install this patch for your system to be up-to-date.
    last seen2020-06-01
    modified2020-06-02
    plugin id14437
    published2004-08-27
    reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14437
    titleAIX 5.2 : IY55682
  • NASL familyAIX Local Security Checks
    NASL idAIX_IY55681.NASL
    descriptionThe remote host is missing AIX Critical Security Patch number IY55681 (SECURITY: Possible buffer overflow in putlvcb command). You should install this patch for your system to be up-to-date.
    last seen2020-06-01
    modified2020-06-02
    plugin id14622
    published2004-09-01
    reporterThis script is Copyright (C) 2004-2018 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/14622
    titleAIX 5.1 : IY55681