CVE-2023-43064: IBM i code execution
Facsimile Support for IBM i 7.2, 7.3, 7.4, and 7.5 could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause arbitrary code to run with the privilege of the user invoking the facsimile support. IBM X-Force ID: 267689.
Other sources
The IBM i product Facsimile Support for i could allow a local user to gain elevated privileges due to an unqualified library call. A malicious actor could cause arbitrary code to run with the privilege of the user invoking the facsimile support.
— IBM
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2023-43064?
CVE-2023-43064 has been assigned a high severity rating due to the potential for local users to gain elevated privileges.
How do I fix CVE-2023-43064?
To mitigate CVE-2023-43064, users should apply the latest security patches provided by IBM for affected versions of IBM i.
What systems are affected by CVE-2023-43064?
CVE-2023-43064 affects IBM i versions 7.2, 7.3, 7.4, and 7.5.
What is the impact of CVE-2023-43064?
The impact of CVE-2023-43064 includes the potential for a local user to execute arbitrary code with elevated privileges.
Who is the vendor for CVE-2023-43064?
The vendor for CVE-2023-43064 is IBM, specifically related to their IBM i operating system.