Vulnerabilities > IBM > AIX > 4.1.5

DATE CVE VULNERABILITY TITLE RISK
1999-02-17 CVE-1999-1405 Unspecified vulnerability in IBM AIX
snap command in AIX before 4.3.2 creates the /tmp/ibmsupt directory with world-readable permissions and does not remove or clear the directory when snap -a is executed, which could allow local users to access the shadowed password file by creating /tmp/ibmsupt/general/passwd before root runs snap -a.
network
low complexity
ibm
critical
10.0
1998-04-08 CVE-1999-0009 Inverse query buffer overflow in BIND 4.9 and BIND 8 Releases.
network
low complexity
data-general isc sgi bsdi caldera ibm nec netbsd redhat sco sun
critical
10.0
1998-04-01 CVE-1999-0003 Execute commands as root via buffer overflow in Tooltalk database server (rpc.ttdbserverd).
network
low complexity
tritreal sgi hp ibm sun
critical
10.0
1998-03-18 CVE-1999-1075 Unspecified vulnerability in IBM AIX 4.1.5
inetd in AIX 4.1.5 dynamically assigns a port N when starting ttdbserver (ToolTalk server), but also inadvertently listens on port N-1 without passing control to ttdbserver, which allows remote attackers to cause a denial of service via a large number of connections to port N-1, which are not properly closed by inetd.
network
low complexity
ibm
5.0
1998-02-25 CVE-1999-1486 Unspecified vulnerability in IBM AIX
sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.
local
high complexity
ibm
1.2
1998-01-21 CVE-1999-1487 Unspecified vulnerability in IBM AIX
Vulnerability in digest in AIX 4.3 allows printq users to gain root privileges by creating and/or modifing any file on the system.
local
low complexity
ibm
7.2
1997-10-29 CVE-1999-0097 The AIX FTP client can be forced to execute commands from a malicious server through shell metacharacters (e.g.
network
low complexity
hp sun ibm
critical
10.0
1997-10-29 CVE-1999-0094 Unspecified vulnerability in IBM AIX
AIX piodmgrsu command allows local users to gain additional group privileges.
local
low complexity
ibm
4.6
1997-10-29 CVE-1999-0093 Unspecified vulnerability in IBM AIX
AIX nslookup command allows local users to obtain root access by not dropping privileges correctly.
local
low complexity
ibm
7.2
1997-10-28 CVE-1999-0091 Unspecified vulnerability in IBM AIX
Buffer overflow in AIX writesrv command allows local users to obtain root access.
local
low complexity
ibm
7.2