CVE-2009-3517: Critical severity ibm aix vulnerability
Published Oct 1, 2009
·Updated
nfs.ext in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly use the nfsportmon setting, which allows remote attackers to bypass intended access restrictions for NFSv4 shares via unspecified vectors.
Affected Software
7 affected components
IBM AIX=5.3.8
IBM AIX=5.3.7
IBM AIX=6.1.0
IBM AIX=6.1.1
IBM AIX=6.1
IBM AIX=6.1.2
IBM AIX=5.3.0
Remediation
Patch Available
Event History
Oct 1, 2009
CVE Published
via MITRE·03:00 PM
Data Sourced
via MITRE·03:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2009-3517?
CVE-2009-3517 is classified as a moderate severity vulnerability.
2
How do I fix CVE-2009-3517?
To fix CVE-2009-3517, ensure proper configuration of the nfs_portmon setting in the impacted IBM AIX versions.
3
Who is affected by CVE-2009-3517?
CVE-2009-3517 affects users of IBM AIX versions 5.3.x and 6.1.x.
4
What type of vulnerability is CVE-2009-3517?
CVE-2009-3517 is a security vulnerability related to improper access restrictions on NFSv4 shares.
5
Can CVE-2009-3517 allow unauthenticated access?
Yes, CVE-2009-3517 can potentially allow remote attackers to bypass intended access restrictions.