CVE-2018-1383
CRITICALIBM AIX 6.1, 7.1, and 7.2 - Privilege Escalation via Daemon Logic Bug
Title source: llmDescription
A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine. IBM X-force ID: 138117.
References (5)
Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry
x_refsource_bid
http://www.securityfocus.com/bid/102989
Vendor Advisory x_refsource_confirm
http://www-01.ibm.com/support/docview.wss?uid=isg3T1026948
Vendor Advisory x_refsource_confirm
http://aix.software.ibm.com/aix/efixes/security/aixbase_advisory.asc
Third Party Advisory, VDB Entry vdb-entry
x_refsource_sectrack
http://www.securitytracker.com/id/1040358
VDB Entry, Vendor Advisory vdb-entry
x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/138117
Scores
CVSS v3
9.1
EPSS
0.0273
EPSS Percentile
84.5%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H
Details
Status
published
Products (19)
ibm/aix
6.1
ibm/aix
6.1.1
ibm/aix
6.1.2
ibm/aix
6.1.3
ibm/aix
6.1.4
ibm/aix
6.1.5
ibm/aix
6.1.6
ibm/aix
6.1.7
ibm/aix
6.1.8
ibm/aix
6.1.9
... and 9 more
Published
Feb 13, 2018
Tracked Since
Feb 18, 2026