CVE-2008-5385: Medium severity ibm aix vulnerability
Published Dec 9, 2008
·Updated
enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local users to delete arbitrary files via unspecified vectors.
Affected Software
3 affected components
IBM AIX=6.1.1
IBM AIX=6.1
IBM AIX=6.1.2
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 9, 2008
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2008-5385?
CVE-2008-5385 is classified as a medium severity vulnerability due to its potential for local users to delete arbitrary files.
2
How do I fix CVE-2008-5385?
To fix CVE-2008-5385, it is recommended to apply the latest patches provided by IBM for AIX versions 6.1.1 to 6.1.2.
3
What versions of AIX are affected by CVE-2008-5385?
CVE-2008-5385 affects IBM AIX versions 6.1.1, 6.1, and 6.1.2.
4
Can remote users exploit CVE-2008-5385?
No, CVE-2008-5385 can only be exploited by local users with access to the affected systems.
5
What actions should be taken if CVE-2008-5385 is discovered in my environment?
If CVE-2008-5385 is discovered, it is important to restrict local user permissions and apply the necessary security patches immediately.