PT-2014-4800 · Bmc · Bmc Patrol For Aix
Published
2014-05-14
·
Updated
2014-06-24
·
CVE-2014-2591
CVSS v2.0
6.9
Medium
| Vector | AV:L/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
BMC Patrol for AIX version 3.9.00
Description
The issue is related to an untrusted search path vulnerability, which allows local users to gain privileges via a crafted library. This is due to an incorrect RPATH setting.
Recommendations
For BMC Patrol for AIX version 3.9.00, update the RPATH setting to a trusted search path to prevent local users from gaining privileges via a crafted library. At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Bmc Patrol For Aix