CVE-2006-4416
Summary
| CVE | CVE-2006-4416 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2006-08-28 20:04:00 UTC |
| Updated | 2017-07-20 01:33:00 UTC |
| Description | Untrusted search path vulnerability in the mkvg command in IBM AIX 5.2 and 5.3 allows local users to gain privileges by modifying the path to point to a malicious (1) chdev, (2) mkboot, (3) varyonvg, or (4) varyoffvg program. |
Risk And Classification
Problem Types: NVD-CWE-Other
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| AIX mkvg Insecure Program Execution Vulnerability - Advisories - Secunia | SECUNIA | secunia.com | |
| IBM AIX Mkvg Command Local Privilege Escalation Vulnerability | BID | www.securityfocus.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| IBM notice: The page you requested cannot be displayed | AIXAPAR | www-1.ibm.com | |
| IBM notice: The page you requested cannot be displayed | AIXAPAR | www-1.ibm.com | |
| SecurityTracker.com Archives - IBM AIX mkvg Command Lets Local Users Gain Root Privileges | SECTRACK | securitytracker.com | |
| IBM AIX mkvg Privilege Escalation Vulnerability - Advisories - Secunia | SECUNIA | secunia.com | |
| IBM notice: The page you requested cannot be displayed | AIXAPAR | www-1.ibm.com | |
| IBM X-Force Exchange | XF | exchange.xforce.ibmcloud.com | |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | VUPEN | www.vupen.com | |
| aix.software.ibm.com/aix/efixes/security/README | CONFIRM | aix.software.ibm.com | |
| IBM AIX Mkvg Local Insecure Program Execution Vulnerability | BID | www.securityfocus.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.