CVE-2006-1247: Low severity IBM AIX vulnerability
Published Apr 19, 2006
·Updated
rmmlcachefile in bos.rte.install in AIX 5.1.0 through 5.3.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
Affected Software
13 affected components
IBM AIX=5.2.0.50
IBM AIX=5.3.0.20
IBM AIX=5.3_l
IBM AIX=5.3.0.10
IBM AIX=5.3
IBM AIX=5.2
IBM AIX=5.2_l
IBM AIX=5.2.0.54
IBM AIX=5.3_ml03
IBM AIX=5.2.2
IBM AIX=5.1l
IBM AIX=5.3.0
IBM AIX=5.1
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Apr 19, 2006
CVE Published
04:06 PM
CVE Published
via MITRE·08:00 PM
Data Sourced
via MITRE·08:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2006-1247?
CVE-2006-1247 is classified as a medium severity vulnerability.
2
How do I fix CVE-2006-1247?
To fix CVE-2006-1247, apply the latest patches or updates from IBM for AIX.
3
Who is affected by CVE-2006-1247?
CVE-2006-1247 affects local users on AIX versions 5.1.0 to 5.3.0.
4
What type of attack is enabled by CVE-2006-1247?
CVE-2006-1247 allows local users to conduct a symlink attack on temporary files.
5
What software is vulnerable to CVE-2006-1247?
The vulnerable software includes various versions of IBM AIX between 5.1.0 and 5.3.0.