First published: Sun Oct 23 2005(Updated: )
LSCFG in IBM AIX 5.2 and 5.3 does not create temporary files securely, which allows local users to corrupt /etc/passwd and possibly other system files via the trace file.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5.3 | |
IBM AIX | =5.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2005-3289 is considered high due to its potential to allow local users to corrupt critical system files.
To fix CVE-2005-3289, it is recommended to apply security patches provided by IBM for AIX versions 5.2 and 5.3.
CVE-2005-3289 affects IBM AIX versions 5.2 and 5.3.
CVE-2005-3289 allows local users to mount an attack that corrupts system files such as /etc/passwd.
CVE-2005-3289 is classified as a local vulnerability.