Stack-based buffer overflow in libcsa.a (aka the calendar daemon library) in IBM AIX 5.x up to and including 5.3.10 and 6.x up to and including 6.1.3, and VIOS 2.1 and previous versions, allows remote malicious users to execute arbitrary code via a long XDR string in the first argument to procedure 21 of rpc.cmsd.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
ibm aix 5.1 |
||
ibm aix 5.2 |
||
ibm aix 5.2.0 |
||
ibm aix 5.3 |
||
ibm aix 5.3.9 |
||
ibm aix 6.1.2 |
||
ibm aix 6.1.1 |
||
ibm vios 1.5.1 |
||
ibm vios 1.5.0 |
||
ibm aix 5 |
||
ibm aix 5.2.2 |
||
ibm aix 5.2_l |
||
ibm aix 5.3_ml03 |
||
ibm aix 5l |
||
ibm aix 6.1.3 |
||
ibm aix 5.1l |
||
ibm aix 5.1.0.10 |
||
ibm aix 5.3.0 |
||
ibm aix 5.3_l |
||
ibm aix 5.3.0.20 |
||
ibm aix 5.3.10 |
||
ibm vios |
||
ibm vios 1.5.2 |
||
ibm aix 5.2.0.50 |
||
ibm aix 5.2.0.54 |
||
ibm aix 5.3.8 |
||
ibm aix 5.3.7 |
||
ibm aix 6.1.0 |
||
ibm aix 6.1 |
||
ibm vios 1.4 |