First published: Thu Jan 08 2004(Updated: )
The getipnodebyname() API in AIX 5.1 and 5.2 does not properly close sockets, which allows attackers to cause a denial of service (resource exhaustion).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5.2 | |
IBM AIX | =5.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2003-0696 is considered a high severity vulnerability due to its potential to cause denial of service through resource exhaustion.
To mitigate CVE-2003-0696, upgrade to a later version of AIX that implements proper socket closure in the getipnodebyname() API.
CVE-2003-0696 affects IBM AIX versions 5.1 and 5.2.
If you are using AIX 5.1 or 5.2, it is critical to upgrade to a patched version to avoid exploitation of CVE-2003-0696.
Yes, CVE-2003-0696 can be exploited remotely, allowing attackers to trigger a denial of service on affected systems.