lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory.
Link | Tags |
---|---|
http://archives.neohapsis.com/archives/aix/2001-q2/0000.html | exploit patch vendor advisory |
http://www.kb.cert.org/vuls/id/123651 | third party advisory us government resource |
http://www.osvdb.org/5582 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/7007 | vdb entry |