Vulnerabilities > CVE-2012-2192 - Resource Management Errors vulnerability in IBM AIX and Vios

047910
CVSS 4.9 - MEDIUM
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
COMPLETE
local
low complexity
ibm
CWE-399
nessus

Summary

The socketpair function in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.1.4-FP-25 SP-02 allows local users to cause a denial of service (system crash) via a crafted application that leverages the presence of a socket on the free list.

Vulnerable Configurations

Part Description Count
OS
Ibm
3
Application
Ibm
1

Common Weakness Enumeration (CWE)

Nessus

  • NASL familyAIX Local Security Checks
    NASL idAIX_IV19178.NASL
    descriptionWhen socketpair calls are used on the system we could see a crash in socket code path due to the fact that one of the socket is in the free list.
    last seen2020-06-01
    modified2020-06-02
    plugin id63716
    published2013-01-24
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63716
    titleAIX 5.3 TL 12 : socket (IV19178)
  • NASL familyAIX Local Security Checks
    NASL idAIX_IV21235.NASL
    descriptionWhen socketpair calls are used on the system we could see a crash in socket code path due to the fact that one of the socket is in the free list.
    last seen2020-06-01
    modified2020-06-02
    plugin id63719
    published2013-01-24
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63719
    titleAIX 7.1 TL 1 : socket (IV21235)
  • NASL familyAIX Local Security Checks
    NASL idAIX_IV21131.NASL
    descriptionWhen socketpair calls are used on the system we could see a crash in socket code path due to the fact that one of the socket is in the free list.
    last seen2020-06-01
    modified2020-06-02
    plugin id63718
    published2013-01-24
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63718
    titleAIX 7.1 TL 0 : socket (IV21131)
  • NASL familyAIX Local Security Checks
    NASL idAIX_IV21128.NASL
    descriptionWhen socketpair calls are used on the system we could see a crash in socket code path due to the fact that one of the socket is in the free list.
    last seen2020-06-01
    modified2020-06-02
    plugin id63717
    published2013-01-24
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63717
    titleAIX 6.1 TL 7 : socket (IV21128)
  • NASL familyAIX Local Security Checks
    NASL idAIX_IV16603.NASL
    descriptionWhen socketpair calls are used on the system we could see a crash in socket code path due to the fact that one of the socket is in the free list.
    last seen2020-06-01
    modified2020-06-02
    plugin id63709
    published2013-01-24
    reporterThis script is Copyright (C) 2013-2019 Tenable Network Security, Inc.
    sourcehttps://www.tenable.com/plugins/nessus/63709
    titleAIX 6.1 TL 6 : socket (IV16603)