Executive Summary

Informations
Name CVE-2014-0930 First vendor Publication 2014-05-08
Vendor Cve Last vendor Modification 2021-08-31

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:L/AC:M/Au:N/C:N/I:N/A:C)
Cvss Base Score 4.7 Attack Range Local
Cvss Impact Score 6.9 Attack Complexity Medium
Cvss Expoit Score 3.4 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

The ptrace system call in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.x, allows local users to cause a denial of service (system crash) or obtain sensitive information from kernel memory via a crafted PT_LDINFO operation.

Original Source

Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-0930

OVAL Definitions

Definition Id: oval:org.mitre.oval:def:24867
 
Oval ID: oval:org.mitre.oval:def:24867
Title: ptrace vulnerability in AIX
Description: The ptrace system call in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.x, allows local users to cause a denial of service (system crash) or obtain sensitive information from kernel memory via a crafted PT_LDINFO operation.
Family: unix Class: vulnerability
Reference(s): CVE-2014-0930
Version: 4
Platform(s): IBM AIX 6.1
IBM AIX 7.1
Product(s):
Definition Synopsis:

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 10
Os 3

Nessus® Vulnerability Scanner

Date Description
2014-08-28 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U861576.nasl - Type : ACT_GATHER_INFO
2014-08-28 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U862133.nasl - Type : ACT_GATHER_INFO
2014-08-26 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U859634.nasl - Type : ACT_GATHER_INFO
2014-08-26 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U861815.nasl - Type : ACT_GATHER_INFO
2014-06-03 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U858978.nasl - Type : ACT_GATHER_INFO
2014-06-03 Name : The remote AIX host is missing a vendor-supplied security patch.
File : aix_U859304.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV58861.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV58888.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV58948.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV59045.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV59607.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV59615.nasl - Type : ACT_GATHER_INFO
2014-05-03 Name : The remote AIX host is missing a security patch.
File : aix_IV59675.nasl - Type : ACT_GATHER_INFO

Sources (Detail)

Source Url
AIXAPAR http://www.ibm.com/support/docview.wss?uid=isg1IV58766
http://www.ibm.com/support/docview.wss?uid=isg1IV58840
http://www.ibm.com/support/docview.wss?uid=isg1IV58861
http://www.ibm.com/support/docview.wss?uid=isg1IV58888
http://www.ibm.com/support/docview.wss?uid=isg1IV58948
http://www.ibm.com/support/docview.wss?uid=isg1IV59045
http://www.ibm.com/support/docview.wss?uid=isg1IV59675
BUGTRAQ http://archives.neohapsis.com/archives/bugtraq/2014-05/0031.html
CONFIRM http://aix.software.ibm.com/aix/efixes/security/ptrace_advisory.asc
MISC https://www.portcullis-security.com/security-research-and-downloads/security-...
XF https://exchange.xforce.ibmcloud.com/vulnerabilities/92262

Alert History

If you want to see full details history, please login or register.
0
1
2
3
4
5
6
7
8
Date Informations
2021-08-31 21:23:27
  • Multiple Updates
2021-05-04 12:29:45
  • Multiple Updates
2021-04-22 01:35:58
  • Multiple Updates
2020-05-23 00:39:43
  • Multiple Updates
2017-08-29 09:24:27
  • Multiple Updates
2014-08-29 13:24:52
  • Multiple Updates
2014-08-27 13:24:33
  • Multiple Updates
2014-06-04 13:23:55
  • Multiple Updates
2014-05-08 17:23:07
  • First insertion