PT-2008-6507 · Ibm · Ibm Aix
Published
2008-12-09
·
Updated
2017-09-29
·
CVE-2008-5384
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
IBM AIX versions 6.1.0 through 6.1.2
Description
The issue allows local users with
aix.system.config.cron authorization to gain privileges by launching an editor through crontab in bos.rte.cron.Recommendations
For IBM AIX versions 6.1.0 through 6.1.2, consider restricting access to the
crontab command for users with aix.system.config.cron authorization until a fix is available.Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ibm Aix