Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2005-2232Improper Restriction of Operations within the Bounds of a Memory Buffer in IBM AIX

4 documents4 sources
Severity
4.6MEDIUMNVD
EPSS
0.3%
top 44.13%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedJul 12
Latest updateMay 1

Description

Buffer overflow in invscout in IBM AIX 5.1.0 through 5.3.0 might allow local users to execute arbitrary code via a long command line argument.

CVSS vector

AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4

Affected Packages1 packages

NVDibm/aix5.1, 5.2, 5.3+2

Patches

🔴Vulnerability Details

2
GHSA
GHSA-2xjr-g6rh-fxqf: Buffer overflow in invscout in IBM AIX 52022-05-01
CVEList
CVE-2005-2232: Buffer overflow in invscout in IBM AIX 52005-07-12

💥Exploits & PoCs

1
Exploit-DB
AIX 5.2 - 'paginit' Local Privilege Escalation2005-06-14
CVE-2005-2232 — IBM AIX vulnerability | cvebase