First published: Thu Jul 18 2013(Updated: )
Multiple unspecified vulnerabilities in the InfiniBand subsystem in IBM AIX 6.1 and 7.1, and VIOS 2.2.2.2-FP-26 SP-02, allow local users to gain privileges via vectors involving (1) arp.ib or (2) ibstat.
Credit: psirt@us.ibm.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =6.1 | |
IBM AIX | =7.1 | |
IBM Virtual I/O Server (VIOS) | =2.2.2.2-fp-26_sp-02 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2013-4011 is considered a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
To fix CVE-2013-4011, apply the latest security patches provided by IBM for AIX 6.1, AIX 7.1, and VIOS 2.2.2.2-FP-26 SP-02.
CVE-2013-4011 affects local users on IBM AIX versions 6.1 and 7.1, as well as VIOS 2.2.2.2-FP-26 SP-02.
The vectors involved in CVE-2013-4011 include arp.ib and ibstat within the InfiniBand subsystem.
CVE-2013-4011 is classified as a local vulnerability, allowing exploitation by users with local access to the affected systems.