U.S. flag   An official website of the United States government
Dot gov

Official websites use .gov
A .gov website belongs to an official government organization in the United States.

Https

Secure .gov websites use HTTPS
A lock (Dot gov) or https:// means you've safely connected to the .gov website. Share sensitive information only on official, secure websites.

Search Results (Refine Search)

Search Parameters:
  • Results Type: Overview
  • Keyword (text search): cpe:2.3:o:ibm:aix:3.2:*:*:*:*:*:*:*
  • CPE Name Search: true
There are 99 matching records.
Displaying matches 81 through 99.
Vuln ID Summary CVSS Severity
CVE-1999-0038

Buffer overflow in xlock program allows local users to execute commands as root.

Published: April 26, 1997; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0046

Buffer overflow of rlogin program using TERM environmental variable.

Published: February 06, 1997; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-1999-0345

Jolt ICMP attack causes a denial of service in Windows 95 and Windows NT systems.

Published: January 01, 1997; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 5.0 MEDIUM
CVE-1999-0128

Oversized ICMP ping packets can result in a denial of service, aka Ping o' Death.

Published: December 18, 1996; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 5.0 MEDIUM
CVE-1999-0101

Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.

Published: December 10, 1996; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-1999-0129

Sendmail allows local users to write to a file and gain group permissions via a .forward or :include: file.

Published: December 03, 1996; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 4.6 MEDIUM
CVE-1999-0131

Buffer overflow and denial of service in Sendmail 8.7.5 and earlier through GECOS field gives root access to local users.

Published: September 11, 1996; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0023

Local user gains root privileges via buffer overflow in rdist, via lookup() function.

Published: July 24, 1996; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0022

Local user gains root privileges via buffer overflow in rdist, via expstr() function.

Published: July 03, 1996; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0019

Delete or create a file via rpc.statd, due to invalid information.

Published: April 24, 1996; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 5.0 MEDIUM
CVE-1999-0078

pcnfsd (aka rpc.pcnfsd) allows local users to change file permissions, or execute arbitrary commands through arguments in the RPC call.

Published: April 18, 1996; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 1.9 LOW
CVE-1999-0208

rpc.ypupdated (NIS) allows remote users to execute arbitrary commands.

Published: December 12, 1995; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-1999-0099

Buffer overflow in syslog utility allows local or remote attackers to gain root privileges.

Published: October 19, 1995; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-1999-1552

dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.

Published: July 20, 1994; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0337

AIX batch queue (bsh) allows local and remote users to gain additional privileges when network printing is enabled.

Published: June 03, 1994; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 7.5 HIGH
CVE-1999-0113

Some implementations of rlogin allow root access if given a -froot parameter.

Published: May 23, 1994; 12:00:00 AM -0400
V3.x:(not available)
V2.0: 10.0 HIGH
CVE-1999-0117

AIX passwd allows local users to gain root access.

Published: March 31, 1992; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-1121

The default configuration for UUCP in AIX before 3.2 allows local users to gain root privileges.

Published: March 19, 1992; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 7.2 HIGH
CVE-1999-0627

The rexd service is running, which uses weak authentication that can allow an attacker to execute commands.

Published: March 01, 1992; 12:00:00 AM -0500
V3.x:(not available)
V2.0: 0.0 LOW