CVE Database
/

CVE-2009-2727

Back to search

CVE-2009-2727

Published: Aug 10, 2009

Modified: Sep 16, 2024

PUBLISHED

Description

Stack-based buffer overflow in the _tt_internal_realpath function in the ToolTalk library (libtt.a) in IBM AIX 5.2.0, 5.3.0, 5.3.7 through 5.3.10, and 6.1.0 through 6.1.3, when the rpc.ttdbserver daemon is enabled in /etc/inetd.conf, allows remote attackers to execute arbitrary code via a long XDR-encoded ASCII string to remote procedure 15.

VendorProductVersions

n/a

n/a

affected
n/a

References

IZ52843
vendor-advisory
x_refsource_AIXAPAR
35505
third-party-advisory
x_refsource_SECUNIA
ADV-2009-1620
vdb-entry
x_refsource_VUPEN
IZ52848
vendor-advisory
x_refsource_AIXAPAR
IZ52844
vendor-advisory
x_refsource_AIXAPAR
IZ52850
vendor-advisory
x_refsource_AIXAPAR
IZ52847
vendor-advisory
x_refsource_AIXAPAR
IZ52849
vendor-advisory
x_refsource_AIXAPAR
35419
vdb-entry
x_refsource_BID
IZ52851
vendor-advisory
x_refsource_AIXAPAR
IZ52842
vendor-advisory
x_refsource_AIXAPAR
IZ52846
vendor-advisory
x_refsource_AIXAPAR
IZ52845
vendor-advisory
x_refsource_AIXAPAR

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now