CVE-2010-3405: Buffer Overflow
Published Sep 16, 2010
·Updated
Buffer overflow in sasnap in the bos.esagent fileset in IBM AIX 6.1, 5.3, and earlier and VIOS 2.1, 1.5, and earlier allows local users to leverage system group membership and gain privileges via unspecified vectors.
Affected Software
4 affected components
IBM AIX=5.3
IBM AIX=6.1
IBM VIOS=2.1
IBM VIOS=1.5
Remediation
Event History
Sep 16, 2010
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2010-3405?
CVE-2010-3405 is considered a high severity vulnerability due to its potential to allow local privilege escalation.
2
How do I fix CVE-2010-3405?
To fix CVE-2010-3405, you should apply the latest security patches provided by IBM for AIX and VIOS.
3
Who is affected by CVE-2010-3405?
CVE-2010-3405 affects local users of IBM AIX versions 5.3, 6.1 and IBM VIOS versions 1.5, 2.1.
4
What kind of attack does CVE-2010-3405 enable?
CVE-2010-3405 enables local users to exploit a buffer overflow to gain elevated privileges on the system.
5
Is CVE-2010-3405 a network vulnerability?
No, CVE-2010-3405 is not a network vulnerability; it requires local access to the system.