CVE-2005-0261

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/02/2005
Last modified:
03/04/2025

Description

lspath in AIX 5.2, 5.3, and possibly earlier versions, does not drop privileges before processing the -f option, which allows local users to read one line of arbitrary files.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:ibm:aix:5.2:*:*:*:*:*:*:*
cpe:2.3:o:ibm:aix:5.3:*:*:*:*:*:*:*