Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xm7m-3vrw-5x97

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.

IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.

EPSS

Процентиль: 21%
0.00069
Низкий

Связанные уязвимости

nvd
около 19 лет назад

IBM AIX 5.3 does not properly verify the status of file descriptors before setuid execution, which allows local users to gain privileges by closing file descriptor 0, 1, or 2 and then invoking a setuid program, a variant of CVE-2002-0572.

EPSS

Процентиль: 21%
0.00069
Низкий