First published: Tue Jan 09 2001(Updated: )
Buffer overflow in setclock command in IBM AIX 4.3.x and earlier may allow local users to execute arbitrary commands via a long argument.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =4.3.2 | |
IBM AIX | =4.3 | |
IBM AIX | =4.2.1 | |
IBM AIX | =4.2 | |
IBM AIX | =4.3.3 | |
IBM AIX | =4.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2000-1122 is classified as a medium severity vulnerability due to the potential for local users to execute arbitrary commands.
To remediate CVE-2000-1122, upgrade to a version of IBM AIX that does not include the vulnerable setclock command, specifically versions later than AIX 4.3.3.
Local users of IBM AIX versions 4.2.x and 4.3.x are affected by CVE-2000-1122.
CVE-2000-1122 can be exploited through a local buffer overflow attack, allowing execution of arbitrary commands.
CVE-2000-1122 is considered a local vulnerability as it can only be exploited by local users with access to the system.