CVE-2007-4513: Buffer Overflow
Published Nov 5, 2007
·Updated
Multiple stack-based buffer overflows in IBM AIX 5.2 and 5.3 allow local users to gain privileges via a long argument to the (1) "-p" option to lqueryvg or (2) the "-V" option to lquerypv.
Affected Software
2 affected components
IBM AIX=5.3
IBM AIX=5.2
Remediation
Patch Available
Patch Available
Event History
Nov 5, 2007
CVE Published
04:46 PM
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4513?
The severity of CVE-2007-4513 is classified as high due to the potential for local users to gain elevated privileges.
2
How do I fix CVE-2007-4513?
To fix CVE-2007-4513, apply the latest security patches provided by IBM for AIX versions 5.2 and 5.3.
3
What software is affected by CVE-2007-4513?
CVE-2007-4513 affects IBM AIX versions 5.2 and 5.3.
4
What types of attacks can CVE-2007-4513 facilitate?
CVE-2007-4513 can facilitate privilege escalation attacks by allowing local users to execute malicious commands.
5
Are there any workarounds for CVE-2007-4513?
Temporary workarounds for CVE-2007-4513 include restricting access to the vulnerable commands for non-administrative users.