CVE Vulnerabilities

CVE-2014-8904

Published: Jan 15, 2015 | Modified: Aug 31, 2021
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

lquerylv in cmdlvm in IBM AIX 5.3, 6.1, and 7.1 and VIOS 2.2.x allows local users to gain privileges via a crafted DBGCMD_LQUERYLV environment-variable value.

Affected Software

Name Vendor Start Version End Version
Vios Ibm 2.2.0.13 2.2.0.13
Vios Ibm 2.2.1.0 2.2.1.0
Vios Ibm 2.2.0.11 2.2.0.11
Vios Ibm 2.2.0.12 2.2.0.12
Vios Ibm 2.2.1.1 2.2.1.1
Vios Ibm 2.2.1.3 2.2.1.3
Vios Ibm 2.2.0.10 2.2.0.10
Vios Ibm 2.2.3.2 2.2.3.2
Vios Ibm 2.2.1.8 2.2.1.8
Vios Ibm 2.2.2.4 2.2.2.4
Vios Ibm 2.2.1.5 2.2.1.5
Vios Ibm 2.2.1.6 2.2.1.6
Vios Ibm 2.2.1.4 2.2.1.4
Vios Ibm 2.2.3.1 2.2.3.1
Vios Ibm 2.2.3.4 2.2.3.4
Vios Ibm 2.2.1.7 2.2.1.7
Vios Ibm 2.2.2.1 2.2.2.1
Vios Ibm 2.2.2.2 2.2.2.2
Vios Ibm 2.2.2.3 2.2.2.3
Vios Ibm 2.2.3.0 2.2.3.0
Vios Ibm 2.2.3.3 2.2.3.3
Vios Ibm 2.2.2.5 2.2.2.5
Vios Ibm 2.2.1.9 2.2.1.9
Vios Ibm 2.2.2.0 2.2.2.0

References