AIX dtaction Vulnerability

Under certain versions of AIX /usr/dt/bin/dtaction has a buffer overflow condition vulnerability. This vulnerability is in the code which handles the $HOME environment variable. Given that dtaction is SUID root, this vulnerability to can be exploited for root privileges.


 

Privacy Statement
Copyright 2010, SecurityFocus