CVE-2005-0240
IBM AIX 5.2 - Local Format String Vulnerability via chdev Error Message
Title source: llmDescription
Format string vulnerability in chdev on IBM AIX 5.2 allows local users to execute arbitrary code via format string specifiers in a command line argument, which is not properly handled when printing an error message.
References (4)
Core 4
Core References
Various Sources third-party-advisory
x_refsource_idefense
http://www.idefense.com/application/poi/display?type=vulnerabilities
Vendor Advisory vendor-advisory
x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=isg1IY67455
Third Party Advisory, VDB Entry vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/19244
Vendor Advisory vendor-advisory
x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=isg1IY67654
Scores
EPSS
0.0039
EPSS Percentile
31.6%
Details
Status
published
Products (1)
ibm/aix
5.2
Published
May 02, 2005
Tracked Since
Feb 18, 2026