CVE-2005-0250

IBM AIX 5.1-5.3 - Local Format String Vulnerability via auditselect Command Line Argument

Title source: manual
STIX 2.1

Description

Format string vulnerability in auditselect on IBM AIX 5.1, 5.2, and 5.3 allows local users to execute arbitrary code via format string specifiers in a command line argument.

References (9)

Core 9
Core References
Third Party Advisory, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/896729
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/19255
Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=isg1IY67519
Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=isg1IY67802
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/14198
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1013103
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/12496
Vendor Advisory vendor-advisory x_refsource_aixapar
http://www-1.ibm.com/support/docview.wss?uid=isg1IY67472
Patch, Vendor Advisory third-party-advisory x_refsource_idefense
http://www.idefense.com/application/poi/display?id=193&type=vulnerabilities&flashstatus=false

Scores

EPSS 0.0054
EPSS Percentile 42.4%

Details

Status published
Products (3)
ibm/aix 5.1
ibm/aix 5.2
ibm/aix 5.3
Published May 02, 2005
Tracked Since Feb 18, 2026