TROYANOSYVIRUS
Volver a CVEs

CVE-2014-3977

N/A

Descripcion

libodm.a in IBM AIX 6.1 and 7.1, and VIOS 2.2.x, allows local users to overwrite arbitrary files via a symlink attack on a temporary file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2179.

Detalles CVE

Puntuacion CVSS v3.1N/A
Publicado6/8/2014
Ultima modificacion4/12/2025
Fuentenvd
Avistamientos honeypot0

Productos afectados

ibm:aixibm:vios

Debilidades (CWE)

CWE-59

Referencias

http://www.exploit-db.com/exploits/33725(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60299(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60303(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60311(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60312(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60313(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60314(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1030401(af854a3a-2127-422b-91ae-364da2661108)

Correlaciones IOC

Sin correlaciones registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.