Junglewise Threat Intelligence

CVE-1999-0064: IBM AIX buffer overflow in lquerylv

CVE-1999-0064 · Severity: high · CVSS 7.2 · Published 1997-05-26

Technologies: IBM Aix. Vendors: IBM.

Executive brief

A security vulnerability exists in a core utility of the IBM AIX operating system used for querying logical volumes. A local user with standard access can exploit this flaw to gain full administrative (root) control over the system. This could lead to complete unauthorized access to all data and system functions on the affected server.

Technical details

A buffer overflow vulnerability exists in the /usr/sbin/lquerylv program in IBM AIX. The flaw is triggered by providing specially crafted input to the utility, which is typically installed with setuid root permissions. A local, unprivileged attacker can exploit this to overwrite memory and execute arbitrary code with elevated privileges. Successful exploitation results in a root shell, granting the attacker full control over the operating system. The vulnerability has been confirmed in AIX 4.1.4 and 4.2, and is suspected to affect other versions in the 3.x and 4.x branches.

Affected products

  • IBM AIX 4.2, 4.1.4, 4.x, 3.x

Timeline

  • 1997-05-26: disclosed: Initial public disclosure on Bugtraq
  • 1997-05-26: advisory: NVD publication date

References

Related threats