AIX dpsexec漏洞

漏洞信息详情

AIX dpsexec漏洞

漏洞简介

IBM AIX 3.2.5及其早期版本中的dpsexec(DPS服务器)当运行的时候不能正确的检查权限,本地用户可以覆盖任意文件和提升特权。

漏洞公告

Disable the DPS server (/usr/lpp/DPS/bin/dpsexec). This server is actually by default already turned off. If you have have enabled it because you require it we suggest you consider an alternative as there is currently no known fix to this problem.

参考网址

来源: BID
名称: 358
链接:http://www.securityfocus.com/bid/358

来源: BUGTRAQ
名称: 19940720 xnews and XDM
链接:http://lists.insecure.org/lists/bugtraq/1994/Jul/0038.html

受影响实体

© 版权声明
THE END
喜欢就支持一下吧
点赞0 分享