AIX Open Source

 View Only
Expand all | Collapse all

Vulnerable to CVE-2024-6923 and CVE-2024-8088

  • 1.  Vulnerable to CVE-2024-6923 and CVE-2024-8088

    Posted Thu August 29, 2024 04:15 PM

    Hi AIX team, regarding the following vulnerabilites CVE-2024-6923 and CVE-2024-8088.

    Could you help in confirming if we are vulnerable to these as well as if there is anything in the scope to resolve them?

    Please let me know

    Thanks in advance!



    ------------------------------
    Pablo Daniel Zuñiga TREJO
    ------------------------------


  • 2.  RE: Vulnerable to CVE-2024-6923 and CVE-2024-8088

    Posted 9 hours ago

    Hello Pablo,

    Depend on the installed python version you can find the installed version by the following command:

    lslpp -L | grep -i python3.9.base

    If matching the vulnerable fileset version:

    Fileset Lower Level Upper Level
    python3.9.base 3.9.0.0 3.9.19.3

    Then you need to update using the security Bulletin:

    https://www.ibm.com/support/pages/security-bulletin-aix-affected-multiple-vulnerabilities-due-python

    Hope this help.



    ------------------------------
    Mohamed Youssef
    ------------------------------