aix.software.ibm.comConfirmation
http://aix.software.ibm.com/aix/efixes/security/lquerylv_advisory.asc CVE-2016-6079
HIGH
IBM AIX 5.3/6.1/7.1/7.2 - 'lquerylv' Local Privilege Escalation
Record summary
CVE-2016-6079 has a selected CVSS score of 7.8 (high); EIP currently links 1 catalogued exploit and 1 curated repository PoC.
Description
IBM AIX 5.3, 6.1, 7.1, and 7.2 contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. IBM APARs: IV88658, IV87981, IV88419, IV87640, IV88053.
Description source: CVE List
Exploitation context
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
| CVE List | 5.3 | affected | |
| 6.1 | affected | ||
| 7.1 | affected | ||
| 7.2 | affected |
Proofs of concept
2Catalogued exploits
ExploitDBIBM AIX 5.3/6.1/7.1/7.2 - 'lquerylv' Local Privilege EscalationExploitDB exploitby Hector X. MonsegurNot analyzed1 file
Curated repository PoCs
GitHubCVE-2016-6079Curated repository PoCby RhinoSecurityLabsStars: 905Not analyzed3 files
References
594090vdb entry
http://www.securityfocus.com/bid/94090 1037256vdb entry
http://www.securitytracker.com/id/1037256 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2016-6079 40710exploit
https://www.exploit-db.com/exploits/40710