CVE-2012-0723: Input Validation
The kernel in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly implement the dupmsg system call, which allows local users to cause a denial of service (system crash) via a crafted application.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-0723?
CVE-2012-0723 is classified as a high-severity vulnerability due to its potential to cause a denial of service.
How do I fix CVE-2012-0723?
To fix CVE-2012-0723, users should apply the relevant security patches provided by IBM for their affected AIX or VIOS versions.
Which systems are affected by CVE-2012-0723?
CVE-2012-0723 affects IBM AIX versions 5.3, 6.1, and 7.1, as well as IBM VIOS version 2.2.1.4-FP-25 SP-02.
What type of attack does CVE-2012-0723 enable?
CVE-2012-0723 allows local users to execute a crafted application that can lead to a system crash.
Is there a workaround for CVE-2012-0723?
There is no documented workaround for CVE-2012-0723; applying updates is recommended for mitigation.