Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2007-4217
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2007-4217

Description:
Stack-based buffer overflow in the domacro function in ftp in IBM AIX 5.2 and 5.3 allows local users to gain privileges via a long parameter to a macro, as demonstrated by executing a macro via the '$' command.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/38162

ST
  1018871

SAID
  Secunia Advisory: SA27437

IDEFENSE
  http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=616

CONFIRM
  http://www14.software.ibm.com/webapp/set2/subscriptions/ijhifoeblist?mode=7&heading=AIX53&path=%2F200709%2FSECURITY%2F20070905%2Fdatafile101815

BID
  26260

AIXAPAR
  http://www.ibm.com/support/docview.wss?uid=isg1IZ05488
  http://www.ibm.com/support/docview.wss?uid=isg1IZ05487


Return to the previous page.