PT-2007-5431 · Ibm · Aix
Published
2007-08-08
·
Updated
2011-03-08
·
CVE-2007-4238
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
AIX versions 5.2 through 5.3
Description
The issue allows local users with certain privileges to gain root privileges by modifying the pioinit file, which is installed with user and group ownership of bin.
Recommendations
For AIX versions 5.2 through 5.3, consider changing the ownership of the pioinit file to prevent local users from modifying it and gaining root privileges.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Aix