IBM

IBM AIX 7.1 TL5

IBM AIX 7.1 TL5

The IBM AIX 7.1 TL5 reached end of service life on Apr 30, 2023 — IBM no longer ships security patches or fixes for it. Our third-party support keeps it safe to run: 24/7 engineers manage issues, remediate vulnerabilities, and help you maintain compliance.

End of Service LifeEOSL Date: Apr 30, 2023
Issue Management

24/7 engineers own your IBM AIX 7.1 TL5 incidents end to end.

Vulnerability Remediation

Mitigation and patch-around guidance when the vendor no longer ships fixes.

Compliance Maintenance

Controls evidence and documentation that keep auditors satisfied.

Specifications

product
ibm-aix
release
7.1.5
product Label
IBM AIX
release Label
7.1 TL5
codename
lts
latest Version
7.1.5
release Date
2017-10-31
maintained
source Url
https://endoflife.date/ibm-aix

Lifecycle Dates

End of Service Life
Apr 30, 2023
Last OEM Support
Apr 30, 2023

Get Third Party Support

Your quote will be sent to this address.

By submitting this form, you agree to our Privacy Policy.

OEM vs. 3rd Party Support

See how third-party support compares to the vendor contract for IBM AIX 7.1 TL5 — monitoring, break/fix, vulnerability work, operations and compliance, before and after EOSL.

FeatureOEM Support3rd Party Support
Post-EOSL Support
Break/Fix Support
Until EOSL
24/7 Monitoring
Vulnerability Scanning & Remediation
Managed Operations
Procedure & Configuration Review
Compliance & Audit Documentation
Limited
Discounted Migration to Other Platforms

Why Choose 3rd Party Support for IBM AIX 7.1 TL5?

Vulnerability Remediation

Scanning, mitigation and patch-around guidance for IBM AIX 7.1 TL5 when the vendor no longer ships fixes.

Compliance Maintenance

Procedure review, controls evidence and the documentation auditors ask for — maintained continuously, not scrambled at audit time.

24/7 Expert Support

Engineers who know this release monitor, manage and fix issues around the clock — break/fix to managed operations.

IBM AIX 7.1 TL5 Support: Frequently Asked Questions

Is the IBM AIX 7.1 TL5 still supported?

IBM ended support for the IBM AIX 7.1 TL5 on Apr 30, 2023 — no more patches or fixes from the vendor. Third-party support keeps it covered: our engineers manage issues, remediate vulnerabilities, and help you maintain compliance for as long as you run it.

When is the IBM AIX 7.1 TL5 end of service life (EOSL) date?

IBM lists the end of service life for the IBM AIX 7.1 TL5 as Apr 30, 2023.

Can I keep using the IBM AIX 7.1 TL5 after its EOSL date?

Yes. EOSL means IBM stops issuing patches and support — the software itself keeps running. Third-party support covers it from there: issue management, security vulnerability remediation, and the compliance documentation auditors ask for, for as long as you choose to run it.

How much does third-party support for the IBM AIX 7.1 TL5 cost?

Typically 40-70% below the OEM maintenance renewal price. Exact pricing depends on quantity, service level and location — request a quote and we respond within 24 hours.

Known Vulnerabilities Affecting IBM AIX 7.1 TL5

21 published CVEs affect the IBM AIX 7.1 TL5, including 9 rated critical or high severity. IBM no longer ships security patches for this release — our engineers provide mitigation guidance, workarounds and hardening support.

CVESeverityCVSSPublishedSummary
CVE-2018-1383CRITICAL9.1Feb 13, 2018A software logic bug creates a vulnerability in an AIX 6.1, 7.1, and 7.2 daemon which could allow a user with root privileges on one system, to obtain root access on another machine. IBM X-force ID: 138117.
CVE-2002-1686HIGH10.0Dec 31, 2002Buffer overflow in lscfg of unknown versions of AIX has unknown impact.
CVE-2001-1061HIGH10.0Aug 31, 2001Vulnerability in lsmcode in unknown versions of AIX, possibly related to a usage error.
CVE-1999-1119HIGH10.0Apr 27, 1992FTP installation script anon.ftp in AIX insecurely configures anonymous FTP, which allows remote attackers to execute arbitrary commands.
CVE-2022-22351HIGH8.6Mar 7, 2022IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged trusted host user to exploit a vulnerability in the nimsh daemon to cause a denial of service in the nimsh daemon on another trusted host. IBM X-Force ID: 220396
CVE-2016-3053HIGH7.8Feb 1, 2017IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges.
CVE-2001-1529HIGH7.5Dec 31, 2001Buffer overflow in rpc.yppasswdd (yppasswd server) in AIX allows attackers to gain unauthorized access via a long string. NOTE: due to lack of details in the vendor advisory, it is not clear if this is the same issue as CVE-2001-0779.
CVE-1999-0057HIGH7.5Nov 16, 1998Vacation program allows command execution by remote users through a sendmail command.
CVE-1999-0033HIGH7.2Jun 12, 1997Command execution in Sun systems via buffer overflow in the at program.
CVE-2021-38989MEDIUM5.5Mar 7, 2022IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 212951.
CVE-2021-38988MEDIUM5.5Mar 7, 2022IBM AIX 7.1, 7.2, 7.3, and VIOS 3.1 could allow a non-privileged local user to exploit a vulnerability in the AIX kernel to cause a denial of service. IBM X-Force ID: 212950.
CVE-2004-0243MEDIUM5.0Nov 23, 2004AIX 4.3.3 through AIX 5.1, when direct remote login is disabled, displays a different message if the password is correct, which allows remote attackers to guess the password via brute force methods.
CVE-2002-1041MEDIUM5.0Oct 4, 2002Unknown vulnerability in DCE (1) SMIT panels and (2) configuration commands, possibly related to relative pathnames.
CVE-2002-1040MEDIUM5.0Oct 4, 2002Unknown vulnerability in the WebSecure (DFSWeb) configuration utilities in AIX 4.x, possibly related to relative pathnames.
CVE-1999-0566MEDIUM5.0Aug 1, 1997An attacker can write to syslog files from any location, causing a denial of service by filling up the logs, and hiding activities.
CVE-2020-4788MEDIUM4.7Nov 20, 2020IBM Power9 (AIX 7.1, 7.2, and VIOS 3.1) processors could allow a local user to obtain sensitive information from the data in the L1 cache under extenuating circumstances. IBM X-Force ID: 189296.
CVE-2002-1551MEDIUM4.6Mar 31, 2003Buffer overflow in nslookup in IBM AIX may allow attackers to cause a denial of service or execute arbitrary code.
CVE-2002-1550MEDIUM4.6Mar 31, 2003dump_smutil.sh in IBM AIX allows local users to overwrite arbitrary files via a symlink attack on temporary files.
CVE-1999-0524MEDIUM4.0Aug 1, 1997ICMP information such as (1) netmask and (2) timestamp is allowed from arbitrary hosts.
CVE-2002-1687LOW2.1Dec 31, 2002Buffer overflow in the diagnostics library in AIX allows local users to "cause data and instructions to be overwritten" via a long DIAGNOSTICS environment variable.

Showing the 20 most severe of 21 known CVEs.

Get Third Party Support

Related IBM Products

All IBM products →
IBM AIX 7.1 TL5
Save 40-70% vs OEM
Get Third Party Support