First published: Mon Nov 05 2007(Updated: )
Stack-based buffer overflow in the domacro function in ftp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via a long parameter to a macro, as demonstrated by executing a macro via the '$' command.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5.3 | |
IBM AIX | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4217 is classified as a high severity vulnerability due to its potential for local privilege escalation.
To fix CVE-2007-4217, apply the appropriate patches provided by IBM for AIX 5.2 and 5.3.
Local users of IBM AIX 5.2 and 5.3 systems are affected by CVE-2007-4217 due to the vulnerability in the domacro function.
CVE-2007-4217 describes a stack-based buffer overflow attack that can be exploited by providing long parameters to a macro.
CVE-2007-4217 is not exploitable remotely; it requires local access to the affected AIX systems.