|
IBM AIX contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is due to htlogrep (part of the internet_server.base.httpd fileset and 'Internet Connection Server') creating a file in /usr/sbin insecurely. After file creation, htlogrep calls /usr/sbin/arp which runs with increased privileges.
|