CVE Vulnerabilities

CVE-2007-4622

Published: Nov 05, 2007 | Modified: Jul 29, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Integer underflow in the dns_name_fromtext function in (1) libdns_nonsecure.a and (2) libdns_secure.a in IBM AIX 5.2 allows local users to gain privileges via a crafted -y (TSIG key) command line argument to dig.

Affected Software

Name Vendor Start Version End Version
Aix Ibm 5.2 (including) 5.2 (including)

References