CVE-2008-1594

IBM AIX 5.2 and 5.3 - Denial of Service via JFS2 Filesystem Resizing

Title source: llm
STIX 2.1

Description

The kernel in IBM AIX 5.2 and 5.3 does not properly handle resizing JFS2 filesystems on concurrent volume groups spread across multiple nodes, which allows local users of one node to cause a denial of service (remote node crash) by using chfs or lreducelv to reduce a filesystem's size.

References (10)

Core 10
Core References
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/28467
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1019606
Various Sources vendor-advisory x_refsource_aixapar
http://www.ibm.com/support/docview.wss?uid=isg1IZ04953
Various Sources vendor-advisory x_refsource_aixapar
http://www.ibm.com/support/docview.wss?uid=isg1IZ04946
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5434
Various Sources vendor-advisory x_refsource_aixapar
http://www.ibm.com/support/docview.wss?uid=isg1IZ05246
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0865

Scores

EPSS 0.0037
EPSS Percentile 29.1%

Details

Status published
Products (3)
ibm/aix 5.2
ibm/aix 5.3
ibm/aix 6.1
Published Mar 31, 2008
Tracked Since Feb 18, 2026