CVE-1999-0101

IBM AIX - Buffer Overflow in gethostbyname via Corrupt DNS Host Names

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-1999-0101. PoCs published by RoMaNSoFt.

AI-analyzed exploit summary This is a local root exploit for CVE-1999-0101, targeting a buffer overflow in the gethostbyname() function on IBM AIX systems. It uses a shellcode-based approach to achieve privilege escalation by exploiting insufficient bounds checking in memory buffers.

Description

Buffer overflow in AIX and Solaris "gethostbyname" library call allows root access through corrupt DNS host names.

Exploits (1)

exploitdb WORKING POC VERIFIED
by RoMaNSoFt · bashremotemultiple
https://www.exploit-db.com/exploits/22251

This is a local root exploit for CVE-1999-0101, targeting a buffer overflow in the gethostbyname() function on IBM AIX systems. It uses a shellcode-based approach to achieve privilege escalation by exploiting insufficient bounds checking in memory buffers.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: IBM AIX 3.2.x, 4.1.x, 4.2.x (tested on AIX 4.1.4.0)
No auth needed
Prerequisites: Access to a vulnerable AIX system with the suid binary /bin/host present
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (1)

Core 1
Core References
Vendor Advisory third-party-advisory government-resource x_refsource_ciac
http://ciac.llnl.gov/ciac/bulletins/h-13.shtml

Scores

EPSS 0.0790
EPSS Percentile 94.0%

Details

Status published
Products (3)
ibm/aix 3.2
ibm/aix 4.1
ibm/aix 4.2
Published Dec 10, 1996
Tracked Since Feb 18, 2026