CVE-1999-0122

IBM AIX - Buffer Overflow in lchangelv

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-1999-0122. PoCs published by Bryan P. Self, HORKimhab.

AI-analyzed exploit summary This exploit targets a buffer overflow vulnerability in lchangelv on AIX systems. It leverages the SUID root binary to escalate privileges by overflowing a buffer with shellcode, granting root access.

Description

Buffer overflow in AIX lchangelv gives root access.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Bryan P. Self · clocalaix
https://www.exploit-db.com/exploits/19309

This exploit targets a buffer overflow vulnerability in lchangelv on AIX systems. It leverages the SUID root binary to escalate privileges by overflowing a buffer with shellcode, granting root access.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: AIX lchangelv (version not specified)
Auth required
Prerequisites: Attacker must have GID or EGID of 'system' · Access to execute /usr/sbin/lchangelv
mistral-large-3 · analyzed Feb 16, 2026 Full analysis →
github STUB
by HORKimhab · shellpoc
https://github.com/HORKimhab/poc-cve-collection/tree/main/1999/0xxx/CVE-1999-0122.md

The repository contains a placeholder markdown file for CVE-1999-0122, a buffer overflow in AIX's `lchangelv` utility that leads to local privilege escalation (LPE). The file lacks exploit code, technical details, or proof-of-concept implementation.

Classification
Stub 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Theoretical
Target: AIX lchangelv (unspecified version)
Auth required
Prerequisites: Local access to a vulnerable AIX system · Valid user account with permissions to execute `lchangelv`
mistral-large-3 · analyzed Jul 15, 2026 Full analysis →

References (1)

Core 1
Core References
Third Party Advisory, VDB Entry x_refsource_misc
https://exchange.xforce.ibmcloud.com/vulnerabilities/CVE-1999-0122

Scores

EPSS 0.0110
EPSS Percentile 62.4%

Details

Status published
Products (7)
ibm/aix 4.1
ibm/aix 4.1.1
ibm/aix 4.1.2
ibm/aix 4.1.3
ibm/aix 4.1.4
ibm/aix 4.1.5
ibm/aix 4.2
Published Jul 21, 1997
Tracked Since Feb 18, 2026