Impact
The vulnerability allows a remote attacker to impersonate the Trusted Network Connect (TNC) policy server by bypassing certificate validation, enabling interception and modification of traffic. This flaw can compromise confidential data in transit and allow integrity attacks. The weakness is a classic improper certificate validation flaw (CWE‑295).
Affected Systems
Affected systems include IBM AIX operating systems 7.2 and 7.3 on any platform, with identified service packs: for AIX 7.3 use TL04SP2, TL03SP3, or TL02SP5; for AIX 7.2 use TL05 SP13. IBM PowerVM Virtual I/O Server (VIOS) version 4.1, across its 4.1.0, 4.1.1, and 4.1.2 releases, is impacted, with fix packs 4.1.0.50, 4.1.1.30, and 4.1.2.20 respectively. Any installation at or below these levels is vulnerable unless patched.
Risk and Exploitability
The CVSS score of 9.3 indicates a high severity flaw that can be exploited remotely without authentication. Because the flaw involves certificate validation, an attacker can perform man‑in‑the‑middle attacks and traffic tampering. The EPSS score is not available, and the vulnerability is not listed in the CISA KEV catalog, but the high CVSS and remote nature maintain a high risk. Exploitation requires network access to the vulnerable system, a realistic vector for externally exposed hosts. An LPAR reboot is required for most AIX service pack updates, and VIOS updates may also require a reboot. Additional steps are needed for VIOS 4.1.0 and 4.1.1 to migrate to Postgres15 after applying the latest fix packs.
OpenCVE Enrichment