BugTraq
Patches available for IBM AIX flaws Dec 15 2005 05:12PM
NGSSoftware Insight Security Research (nisr nextgenss com) (1 replies)
Re: Patches available for IBM AIX flaws Dec 15 2005 10:58PM
David Litchfield (davidl ngssoftware com)
Correction:

> 4) There are arbitrary file data append issues in getShell and getCommand
> in conjuction with specific settings in the malloc debug system.Both
> getShell and getCommand are setuid root.

> Issue 4 affects AIX versions 5.3, 5.2 and 5.1.

Issue 4 affects only AIX 5.3 and not 5.2 and 5.1 as was indicated.
Apologies!
Cheers,
David

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus