Oval Definition:
oval:org.mitre.oval:def:20367
Revision Date
:
2014-01-20
Version
:
15
Title
:
Arbitary file overwrite symlink in libodm
Description
:
libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
Family
:
unix
Class
:
vulnerability
Status
:
ACCEPTED
Reference(s)
:
CVE-2012-2179
Platform(s)
:
IBM AIX 6.1
IBM AIX 7.1
Product(s)
:
Definition Synopsis
platforms
IBM AIX 6.1 is installed
OR
IBM AIX 7.1 is installed
AND
filesets
File Version Exists
bos.rte.odm greater than or equal 5.3.8.0
AND
bos.rte.odm less than or equal 5.3.8.0
OR
File Version Exists
bos.rte.odm greater than or equal 6.1.6.0
AND
bos.rte.odm less than or equal 6.1.6.15
OR
File Version Exists
bos.rte.odm greater than or equal 6.1.7.0
AND
bos.rte.odm less than or equal 6.1.7.15
OR
File Version Exists
bos.rte.odm greater than or equal 7.1.0.0
AND
bos.rte.odm less than or equal 7.1.0.15
OR
File Version Exists
bos.rte.odm greater than or equal 7.1.1.0
AND
bos.rte.odm less than or equal 7.1.1.15
BACK