CVE-2003-0697Use of Externally-Controlled Format String in IBM AIX

3 documents3 sources
Severity
7.2HIGHNVD
EPSS
0.2%
top 62.98%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 6
Latest updateApr 29

Description

Format string vulnerability in lpd in the bos.rte.printers fileset for AIX 4.3 through 5.2, with debug enabled, allows local users to cause a denial of service (crash) or gain root privileges.

CVSS vector

AV:L/AC:L/C:C/I:C/A:CExploitability: 3.9 | Impact: 10.0

Affected Packages1 packages

NVDibm/aix4.3, 5.1, 5.2+2

🔴Vulnerability Details

2
GHSA
GHSA-434c-3rv6-6g4q: Format string vulnerability in lpd in the bos2022-04-29
CVEList
CVE-2003-0697: Format string vulnerability in lpd in the bos2003-09-23
CVE-2003-0697 — IBM AIX vulnerability | cvebase