Release date:
Updated on:
Affected Systems:
Ibm aix 7.1
Ibm aix 6.1
Description:
--------------------------------------------------------------------------------
Bugtraq id: 60348
CVE (CAN) ID: CVE-2013-3035
AIX is an open standard UNIX operating system that provides you with an enterprise information technology infrastructure.
A remote denial of service vulnerability exists in ibm aix 6.1 and 7.1. Attackers can exploit this vulnerability to cause a denial of service. If a malformed IPv6 packet is sent to an AIX machine with an IPv6 address configured, The Machine Suspends processing the packet.
<* Source: vendor
Link: http://www-01.ibm.com/support/docview.wss? Uid = isg1SSRVPOAIX71SECURITY130604-1510
*>
Suggestion:
--------------------------------------------------------------------------------
Temporary solution:
If you cannot install or upgrade the patch immediately, NSFOCUS recommends that you take the following measures to reduce the threat:
* Set "minimal-responses" to "yes ".
Vendor patch:
IBM
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.ibm.com/support/fixcentral/
Ftp://aix.software.ibm.com/aix/efixes/security
Http://www.ibm.com/eserver/support/fixes/fixcentral/main/pseries/aix