First published: Fri Mar 17 2006(Updated: )
Unspecified vulnerability in mklvcopy in BOS.RTE.LVM in IBM AIX 5.3 allows local users to execute arbitrary commands when mklvcopy calls external commands, possibly due to an untrusted search path vulnerability.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM AIX | =5.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1246 is classified as a medium severity vulnerability.
To fix CVE-2006-1246, update your IBM AIX system to the latest version that addresses this vulnerability.
The impact of CVE-2006-1246 allows local users to execute arbitrary commands due to an untrusted search path in mklvcopy.
A practical workaround for CVE-2006-1246 is to limit local user access or restrict the execution of the mklvcopy command.
Users running IBM AIX 5.3 are affected by CVE-2006-1246.