AIX /bin/passwd Vulnerability
BID:39
Info
AIX /bin/passwd Vulnerability
| Bugtraq ID: | 39 |
| Class: | Unknown |
| CVE: | |
| Remote: | No |
| Local: | Yes |
| Published: | Mar 31 1992 12:00AM |
| Updated: | Mar 31 1992 12:00AM |
| Credit: | |
| Vulnerable: |
IBM AIX 3.2 IBM AIX 3.1 |
| Not Vulnerable: |
IBM AIX 4.3 IBM AIX 4.2.1 IBM AIX 4.2 IBM AIX 4.1.5 IBM AIX 4.1.4 IBM AIX 4.1.3 IBM AIX 4.1.2 IBM AIX 4.1.1 IBM AIX 4.1 IBM AIX 3.2.5 |
Discussion
AIX /bin/passwd Vulnerability
A vulnerability exists with the passwd command in AIX 3.2 and the 2007 update of AIX 3.1. Local users can gain unauthorized root access.
A vulnerability exists with the passwd command in AIX 3.2 and the 2007 update of AIX 3.1. Local users can gain unauthorized root access.
Exploit / POC
AIX /bin/passwd Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected].
Solution / Fix
AIX /bin/passwd Vulnerability
Solution:
A fix is available as APAR IX23505. Patches are available for AIX 3.2 and the 2007 update of AIX 3.1.
Solution:
A fix is available as APAR IX23505. Patches are available for AIX 3.2 and the 2007 update of AIX 3.1.