CVE-2011-1384: Medium severity ibm invscout vulnerability
The (1) bin/invscoutClientVPDSurvey and (2) sbin/invscoutlsvpd programs in invscout.rte before 2.2.0.19 on IBM AIX 7.1, 6.1, 5.3, and earlier allow local users to delete arbitrary files, or trigger inventory scout operations on arbitrary files, via a symlink attack on an unspecified file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1384?
CVE-2011-1384 is considered to be of high severity due to its ability to allow local users to delete arbitrary files.
How do I fix CVE-2011-1384?
To fix CVE-2011-1384, upgrade the invscout.rte package to version 2.2.0.19 or later.
What systems are affected by CVE-2011-1384?
CVE-2011-1384 affects IBM AIX versions 7.1, 6.1, 5.3, and earlier with invscout.rte versions prior to 2.2.0.19.
What kind of attack does CVE-2011-1384 enable?
CVE-2011-1384 enables local users to perform a symlink attack to manipulate or delete files.
Is there a workaround for CVE-2011-1384 if an upgrade cannot be performed immediately?
A temporary workaround for CVE-2011-1384 would be to restrict access to the affected invscout programs until they can be upgraded.