CVE-2005-0261: Low severity IBM AIX vulnerability
Published Feb 10, 2005
·Updated
lspath in AIX 5.2, 5.3, and possibly earlier versions, does not drop privileges before processing the -f option, which allows local users to read one line of arbitrary files.
Affected Software
2 affected components
IBM AIX=5.3
IBM AIX=5.2
Remediation
Event History
Feb 10, 2005
CVE Published
05:00 AM
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-0261?
CVE-2005-0261 is considered a moderate severity vulnerability due to its potential for local users to read arbitrary files.
2
How do I fix CVE-2005-0261?
To fix CVE-2005-0261, it is recommended to apply the relevant patches provided by IBM for AIX versions 5.2 and 5.3.
3
What systems are affected by CVE-2005-0261?
CVE-2005-0261 affects IBM AIX versions 5.2 and 5.3, and potentially earlier releases.
4
What type of attack does CVE-2005-0261 allow?
CVE-2005-0261 allows local users to read the contents of arbitrary files due to insufficient privilege management.
5
Can CVE-2005-0261 be exploited remotely?
No, CVE-2005-0261 is a local vulnerability and requires access to the affected system to exploit.