Impact
The flaw stems from improper neutralization of shell metacharacters in DHCP options that an AIX or PowerVM VIOS system accepts. When a remote host supplies crafted DHCP options, the shell on the target system is invoked with unescaped metacharacters, allowing execution of arbitrary commands. This yields full control of the operating environment, compromising the confidentiality, integrity, and availability of the affected system.
Affected Systems
IBM AIX 7.2 and 7.3 on any Technology Level with Service Packs prior to the levels listed in the APARs, and IBM PowerVM VIOS 4.1 versions 4.1.0, 4.1.1, and 4.1.2 on any Fix Pack prior to the referenced FP numbers.
Risk and Exploitability
The CVSS score of 8.8 places this vulnerability in the high severity range. The EPSS score is not currently available, and the vulnerability is not listed in the CISA KEV catalog. The likely attack vector is remote exploitation via DHCP traffic, inferred from the description that DHCP options are the source of the metacharacter injection. An attacker can trigger the flaw from any network location that can send DHCP messages to the target system, making remediation urgent.
OpenCVE Enrichment