TROYANOSYVIRUS
Back to CVEs

CVE-2014-3977

N/A

Description

libodm.a in IBM AIX 6.1 and 7.1, and VIOS 2.2.x, allows local users to overwrite arbitrary files via a symlink attack on a temporary file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2179.

CVE Details

CVSS v3.1 ScoreN/A
Published6/8/2014
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0

Affected Products

ibm:aixibm:vios

Weaknesses (CWE)

CWE-59

References

http://www.exploit-db.com/exploits/33725(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60299(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60303(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60311(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60312(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60313(af854a3a-2127-422b-91ae-364da2661108)
http://www.ibm.com/support/docview.wss?uid=isg1IV60314(af854a3a-2127-422b-91ae-364da2661108)
http://www.securitytracker.com/id/1030401(af854a3a-2127-422b-91ae-364da2661108)

IOC Correlations

No correlations recorded

This product uses data from the NVD API but is not endorsed or certified by the NVD.