CVE-2003-1018: High severity IBM AIX vulnerability
Published Mar 10, 2004
·Updated
Format string vulnerability in enq command in AIX 4.3, 5.1, and 5.2 allows local users with rintq group privileges to gain privileges via unknown attack vectors.
Affected Software
3 affected components
IBM AIX=5.2
IBM AIX=4.3.3
IBM AIX=5.1
Remediation
Patch Available
Event History
Mar 10, 2004
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2003-1018?
CVE-2003-1018 is considered to be of medium severity due to its potential to allow privilege escalation for local users.
2
How do I fix CVE-2003-1018?
To mitigate CVE-2003-1018, users should upgrade to a patched version of AIX that addresses this format string vulnerability.
3
Which versions of AIX are affected by CVE-2003-1018?
CVE-2003-1018 affects AIX versions 4.3.3, 5.1, and 5.2.
4
Can CVE-2003-1018 be exploited remotely?
No, CVE-2003-1018 requires local user access to exploit the vulnerability.
5
Who can exploit CVE-2003-1018?
Local users with rintq group privileges can exploit CVE-2003-1018 to gain additional privileges.