Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: AIX 5.1/5.2/5.3 local root exploits (diag issue) Dec 21 2004 01:57AM
Shiva Persaud (shivapd us ibm com)
cees-bart <ceesb (at) cs.ru (dot) nl [email concealed]> wrote on 12/20/2004 05:10:41 AM:

> 1) the first is a bug in all setuid diag related tools that use an
> environment variable as a prefix to an external binary executed as root.

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

IBM SECURITY ADVISORY

First Issued: Mon Dec...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus