First published: Mon Sep 10 2007(Updated: )
The perfstat kernel extension in bos.perf.perfstat in AIX 5.3 does not verify privileges when processing a SET call, which allows local users to cause a denial of service (system hang or crash) via unspecified SET operations.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-4799 has a medium severity rating due to its potential for causing denial of service on affected systems.
To fix CVE-2007-4799, it is recommended to apply the appropriate patches or updates provided by IBM for AIX 5.3.
The potential impacts of CVE-2007-4799 include system hangs and crashes resulting from unauthorized SET operations.
Local users on AIX 5.3 systems are affected by CVE-2007-4799 due to insufficient privilege verification.
Currently, there are no widely recognized workarounds for CVE-2007-4799 other than applying the recommended patches.