A buffer overflow exists in IBM AIX muxatmd daemon. The program fails to validate input resulting in a buffer overflow. With a specially crafted request, an attacker can cause core dumps and possibly execute code resulting in a loss of confidentiality and/or integrity.
Classification
Location:
Location Unknown
Attack Type:
Input Manipulation
Impact:
Loss of Confidentiality,
Loss of Integrity
Exploit:
Exploit Unknown
Disclosure:
OSVDB Verified
Solution
Upgrade AIX using the APAR numbers AIX 5.1: IY23847 and AIX 4.3: IY23402 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.