Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2006-2201

Overview

Vulnerability Score 4.3 4.3
CVE Id CVE-2006-2201
Last Modified 07 Mar 2011 12:00:00
Published 04 May 2006 12:06:00
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact PARTIAL PARTIAL
Availability Impact PARTIAL PARTIAL
Access Vector LOCAL
Access Complexity LOW
Authentication SINGLE_INSTANCE

CVE-2006-2201

Summary

Unspecified vulnerability in CA Resource Initialization Manager (CAIRIM) 1.x before 20060502, as used in z/OS Common Services and the LMP component in multiple products, allows attackers to violate integrity via a certain "problem state program" that uses SVC to gain access to supervisor state, key 0.

Vulnerable Systems

Application

  • Ca Resource Initialization Manager 1.0


References

BID - 17840

BUGTRAQ - 20060508 CAID 34013 - CA Common Services CAIRIM on z/OS LMP SVC vulnerability

SECTRACK - 1016028

SECUNIA - 19953

XF - cairim-lmp-privilege-escalation(26234)

VUPEN - ADV-2006-1656

OSVDB - 25234

CONFIRM - http://supportconnectw.ca.com/public/ca_common_docs/cairimsecurity-notice.asp

MISC - http://supportconnectw.ca.com/public/ca_common_docs/cairim-affprods.asp


Last Updated: 27 May 2016 10:42:22