CVE-2018-1383

CRITICAL

IBM AIX 6.1, 7.1, and 7.2 - Privilege Escalation via Daemon Logic Bug

Title source: llm
STIX 2.1

Description

A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine. IBM X-force ID: 138117.

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/102989
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1040358
VDB Entry, Vendor Advisory vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/138117

Scores

CVSS v3 9.1
EPSS 0.0273
EPSS Percentile 84.5%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:H/UI:N/S:C/C:H/I:H/A:H

Details

Status published
Products (19)
ibm/aix 6.1
ibm/aix 6.1.1
ibm/aix 6.1.2
ibm/aix 6.1.3
ibm/aix 6.1.4
ibm/aix 6.1.5
ibm/aix 6.1.6
ibm/aix 6.1.7
ibm/aix 6.1.8
ibm/aix 6.1.9
... and 9 more
Published Feb 13, 2018
Tracked Since Feb 18, 2026