A fix is available
APAR status
Closed as program error.
Error description
The "ibstat" command has a security vulnerability that can allow a non-privileged user to run malicious code with privileged authority.
Local fix
Problem summary
The "ibstat" command allows a non-privileged user to run malicious code with privileged authority.
Problem conclusion
Fixed the vulnerability
Temporary fix
Comments
6100-06 - use AIX APAR IV43582 6100-07 - use AIX APAR IV43106 6100-08 - use AIX APAR IV43580 6100-09 - use AIX APAR IV43657 6100-09 - use AIX APAR IV43657 7100-00 - use AIX APAR IV43562 7100-01 - use AIX APAR IV43539 7100-02 - use AIX APAR IV43561
APAR Information
APAR number
IV43582
Reported component name
AIX 610 STD EDI
Reported component ID
5765G6200
Reported release
610
Status
CLOSED PER
PE
NoPE
HIPER
NoHIPER
Submitted date
2013-06-03
Closed date
2013-06-03
Last modified date
2013-11-21
APAR is sysrouted FROM one or more of the following:
APAR is sysrouted TO one or more of the following:
Fix information
Fixed component name
AIX 610 STD EDI
Fixed component ID
5765G6200
Applicable component levels
R610 PSY U857762
UP13/08/01 I 1000
PTF to Fileset Mapping
U857762 devices.common.IBM.ib.rte 6.1.6.22
[{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSMV87","label":"AIX 6.1 Enterprise Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}},{"Business Unit":{"code":"BU058","label":"IBM Infrastructure w\/TPS"},"Product":{"code":"SSMVAX","label":"AIX Express Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"LOB08","label":"Cognitive Systems"}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SSAUMY","label":"IBM AIX Enterprise Edition"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"","label":""}},{"Business Unit":{"code":"BU054","label":"Systems w\/TPS"},"Product":{"code":"SG11Q","label":"AIX 6.1 HIPERS, APARs and Fixes"},"Component":"","ARM Category":[],"Platform":[{"code":"PF025","label":"Platform Independent"}],"Version":"610","Edition":"","Line of Business":{"code":"","label":""}}]
Document Information
Modified date:
21 November 2013