CVE-2015-4948: Medium severity ibm virtual i/o server (vios) vulnerability
Published Oct 16, 2015
·Updated
netstat in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.x, when a fibre channel adapter is used, allows local users to gain privileges via unspecified vectors.
Affected Software
7 affected components
IBM VIOS=2.2.0
IBM VIOS=2.2.1
IBM VIOS=2.2.2
IBM VIOS=2.2.3
IBM AIX=5.3
IBM AIX=6.1
IBM AIX=7.1
Event History
Oct 16, 2015
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-4948?
CVE-2015-4948 is rated as a medium severity vulnerability due to the potential for local privilege escalation.
2
How do I fix CVE-2015-4948?
To mitigate CVE-2015-4948, apply the relevant security updates provided by IBM for affected versions of AIX and VIOS.
3
Which systems are affected by CVE-2015-4948?
CVE-2015-4948 affects IBM AIX versions 5.3, 6.1, and 7.1 as well as VIOS versions 2.2.x.
4
Can CVE-2015-4948 be exploited remotely?
No, CVE-2015-4948 can only be exploited by local users with access to the affected systems.
5
What is the impact of CVE-2015-4948 on my system?
CVE-2015-4948 allows local users to gain elevated privileges, potentially compromising system security.