About “IBM AIX”

A curated feed of “IBM AIX”-related CVEs appears below. We currently track 245 CVEs for this tag (all time). In the last 365 days, 6 were published. Average CVSS is 6.6 (all time; 8.8 over 365d), and 55% are rated High/Critical (all time). Top CWEs (last 365 days): CWE-114 - Process Control, CWE-22 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal'), CWE-522 - Insufficiently Protected Credentials.

In our taxonomy this topic maps to a LOW impact class. Issues here typically affect operating system packages or kernels. Plan reboots or service restarts and coordinate rollouts across fleets. Use the filters below to sort by CVSS, risk and CWE. Each detail page highlights vendor advisories and mitigation tips.

CVEs tagged with this topic. Filters apply to the whole list (loaded from JSON).

CVSS ≥ 0.0
1999-12-31
High

CVE-1999-1589

Unspecified vulnerability in crontab in IBM AIX 3.2 allows local users to gain root privileges via unknown attack vectors.

1999-08-18
Critical

CVE-1999-0745

Buffer overflow in Source Code Browser Program Database Name Server Daemon (pdnsd) for the IBM AIX C Set ++ compiler.

1999-01-29
Medium

CVE-1999-1546

netstation.navio-com.rte 1.1.0.1 configuration script for Navio NC on IBM AIX exports /tmp over NFS as world-readable and world-writable.

1998-02-25
Low

CVE-1999-1486

sadc in IBM AIX 4.1 through 4.3, when called from programs such as timex that are setgid adm, allows local users to overwrite arbitrary files via a symlink attack.

1994-07-20
High

CVE-1999-1552

dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges.