CVE-2005-0250: High severity IBM AIX vulnerability
Published Feb 8, 2005
·Updated
Format string vulnerability in auditselect on IBM AIX 5.1, 5.2, and 5.3 allows local users to execute arbitrary code via format string specifiers in a command line argument.
Affected Software
3 affected components
IBM AIX=5.3
IBM AIX=5.2
IBM AIX=5.1
Remediation
Patch Available
Event History
Feb 8, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0250?
CVE-2005-0250 has a high severity due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2005-0250?
To mitigate CVE-2005-0250, upgrade the affected versions of IBM AIX (5.1, 5.2, and 5.3) to a newer, patched version.
3
Who is impacted by CVE-2005-0250?
CVE-2005-0250 affects local users of IBM AIX versions 5.1, 5.2, and 5.3.
4
What is the nature of the vulnerability in CVE-2005-0250?
CVE-2005-0250 is a format string vulnerability in auditselect that can be exploited via format string specifiers in command line arguments.
5
Can remote users exploit CVE-2005-0250?
No, CVE-2005-0250 is a local vulnerability and can only be exploited by local users on the affected systems.