CVE-2005-3289: Low severity IBM AIX vulnerability
Published Oct 23, 2005
·Updated
LSCFG in IBM AIX 5.2 and 5.3 does not create temporary files securely, which allows local users to corrupt /etc/passwd and possibly other system files via the trace file.
Affected Software
2 affected components
IBM AIX=5.3
IBM AIX=5.2
Event History
Oct 23, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-3289?
The severity of CVE-2005-3289 is considered high due to its potential to allow local users to corrupt critical system files.
2
How do I fix CVE-2005-3289?
To fix CVE-2005-3289, it is recommended to apply security patches provided by IBM for AIX versions 5.2 and 5.3.
3
Which versions of IBM AIX are affected by CVE-2005-3289?
CVE-2005-3289 affects IBM AIX versions 5.2 and 5.3.
4
What type of attack does CVE-2005-3289 allow?
CVE-2005-3289 allows local users to mount an attack that corrupts system files such as /etc/passwd.
5
Is CVE-2005-3289 a remote or local vulnerability?
CVE-2005-3289 is classified as a local vulnerability.