CVE-2005-2234: Buffer Overflow
Published Jul 12, 2005
·Updated
Buffer overflow in the getlvname command in IBM AIX 5.1, 5.2 and 5.3, might allow local users to execute arbitrary code via long command line arguments.
Affected Software
14 affected components
IBM AIX=5.3_l
IBM AIX=5.3
IBM AIX=5.2
IBM AIX=5.2_l
IBM AIX=5.2.2
IBM AIX=5.1l
IBM AIX=5.1
IBM AIX=5.1
IBM AIX=5.1l
IBM AIX=5.2
IBM AIX=5.2.2
IBM AIX=5.2_l
IBM AIX=5.3
IBM AIX=5.3_l
Remediation
Patch Available
Patch Available
Patch Available
Event History
Jul 12, 2005
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2234?
CVE-2005-2234 has been classified with a high severity due to its potential to allow local users to execute arbitrary code.
2
How do I fix CVE-2005-2234?
To fix CVE-2005-2234, users should apply the latest patches provided by IBM for IBM AIX versions 5.1, 5.2, and 5.3.
3
Which versions of IBM AIX are affected by CVE-2005-2234?
CVE-2005-2234 affects IBM AIX versions 5.1, 5.2, and 5.3.
4
Is CVE-2005-2234 exploitable remotely?
CVE-2005-2234 requires local access for exploitation and is not remotely exploitable.
5
What components of IBM AIX are involved in CVE-2005-2234?
CVE-2005-2234 involves the 'getlvname' command which is vulnerable to buffer overflow attacks.