CVE-2025-36244: IBM AIX privilege escalation

Published Sep 16, 2025
·
Updated

IBM AIX 7.2, 7.3, IBM VIOS 3.1, and 4.1, when configured to use Kerberos network authentication, could allow a local user to write to files on the system with root privileges due to improper initialization of critical variables.

Other sources

IBM AIX, when configured to use Kerberos network authentication, could allow a local user to write to files on the system with root privileges due to improper initialization of critical variables.

IBM

Affected Software

11 affected components
IBM AIX>=7.2<=7.3
IBM VIOS>=3.1<=4.1
IBM AIX<=7.2
IBM AIX<=7.3
IBM VIOS<=3.1
IBM VIOS<=4.1
All of the following
Any of the following
IBM VIOS=3.1
IBM VIOS=4.1
IBM AIX=7.2
IBM AIX=7.3
IBM AIX

Remediation

Information

IBM strongly recommends addressing the vulnerability now.   AIX and VIOS fixes are available. The AIX and VIOS fixes can be downloaded via https from: https://aix.software.ibm.com/aix/efixes/security/kerberos_fix.tar     The link above is to a tar file containing this signed advisory, fix packages, and OpenSSL signatures for each package. The fixes below include prerequisite checking. This will enforce the correct mapping between the fixes and AIX Technology Levels.   You must be on the 'prereq for installation' level before applying the interim fix. This may require installing a new level(prereq version) first from: https://www.ibm.com/resources/mrs/assets?source=aixbp   AIX LevelInterim FixFileset Name (prereq for installation)7.2, 7.3IJ55344s9a.250722.epkg.Zkrb5.client.rte (1.16.1.7)   VIOS LevelInterim FixFileset Name (prereq for installation)3.1, 4.1IJ55344s9a.250722.epkg.Zkrb5.client.rte (1.16.1.7)   To extract the fixes from the tar file:   tar xvf kerberos_fix.tar cd kerberos_fix   Verify you have retrieved the fixes intact: The checksums below were generated using the "openssl dgst -sha256 [filename]" command as the following:   openssl dgst -sha256filename7e771a31c6f02b5635d99e3444c6085c1c67fd744ed00eade1d042134df6bb54IJ55344s9a.250722.epkg.Z   These sums should match exactly. The OpenSSL signatures in the tar file and on this advisory can also be used to verify the integrity of the fixes. If the sums or signatures cannot be confirmed, contact IBM Support at http://ibm.com/support/  and describe the discrepancy.           openssl dgst -sha256 -verify [pubkey_file] -signature [advisory_file].sig [advisory_file] openssl dgst -sha256 -verify [pubkey_file] -signature [ifix_file].sig [ifix_file]   Published advisory OpenSSL signature file location: https://aix.software.ibm.com/aix/efixes/security/kerberos_advisory.asc.sig

Event History

Sep 16, 2025
CVE Published
via IBM·12:00 AM
Data Sourced
via IBM·12:00 AM
DescriptionAffected Software
CVE Published
via MITRE·02:38 PM
Data Sourced
via MITRE·02:38 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software

Parent advisories

This vulnerability appears in the following advisories.

Frequently Asked Questions

1

What is the severity of CVE-2025-36244?

The severity of CVE-2025-36244 is classified as high due to potential unauthorized access to root privileges.

2

How do I fix CVE-2025-36244?

To fix CVE-2025-36244, upgrade to the latest patched versions of IBM AIX or IBM VIOS as provided by IBM.

3

Who is affected by CVE-2025-36244?

CVE-2025-36244 affects users of IBM AIX 7.2, 7.3, and IBM VIOS 3.1, 4.1 configured to use Kerberos network authentication.

4

What causes CVE-2025-36244?

CVE-2025-36244 is caused by improper initialization of critical variables leading to potential unauthorized file write access.

5

Can CVE-2025-36244 be exploited remotely?

CVE-2025-36244 requires local access to the system, making remote exploitation unlikely.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203