CVE-2006-4254 – IBM AIX 5.3.0 - 'setlocale()' Local Privilege Escalation
https://notcve.org/view.php?id=CVE-2006-4254
Unspecified vulnerability in setlocale in IBM AIX 5.1.0 through 5.3.0 allows local users to gain privileges via unspecified vectors. Vulnerabilidad no especificada en setlocale en IBM AIX 5.1.0 hasta 5.3.0 permite a usuarios locales escalar privilegios a través de vectores no especificados. • https://www.exploit-db.com/exploits/4612 ftp://aix.software.ibm.com/aix/efixes/security/README http://secunia.com/advisories/21541 http://securitytracker.com/id?1016712 http://www-1.ibm.com/support/search.wss?rs=0&q=IY88183&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IY88512&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IY88528&apar=only http://www.osvdb.org/27996 http://www.securityfocus.com/bid/19578 http://www.vupen.com •
CVE-2006-2647
https://notcve.org/view.php?id=CVE-2006-2647
Untrusted search path vulnerability in update_flash for IBM AIX 5.1, 5.2 and 5.3 allows local users to execute arbitrary commands via unknown vectors involving lsmcode and possibly other commands. • http://secunia.com/advisories/20325 http://securitytracker.com/id?1016166 http://www-1.ibm.com/support/search.wss?rs=0&q=IY85517&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IY85518&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IY88524&apar=only http://www.securityfocus.com/bid/18114 http://www.vupen.com/english/advisories/2006/2007 •
CVE-2006-1247
https://notcve.org/view.php?id=CVE-2006-1247
rm_mlcache_file in bos.rte.install in AIX 5.1.0 through 5.3.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files. • http://secunia.com/advisories/19656 http://securitytracker.com/id?1015952 http://www-1.ibm.com/support/docview.wss?uid=isg1IY82357 http://www.nsfocus.com/english/homepage/research/0603.htm http://www.osvdb.org/24706 http://www.securityfocus.com/archive/1/431846/100/0/threaded http://www.securityfocus.com/archive/1/431848/100/0/threaded http://www.securityfocus.com/bid/17576 http://www.vupen.com/english/advisories/2006/1389 https://exchange.xforce.ibmcloud.com/vulnerabilities • CWE-59: Improper Link Resolution Before File Access ('Link Following') •
CVE-2006-0667
https://notcve.org/view.php?id=CVE-2006-0667
lscfg in IBM AIX 5.2 and 5.3 allows local users to modify arbitrary files via a symlink attack. • http://securitytracker.com/id?1015622 http://www-1.ibm.com/support/docview.wss?uid=isg1IY77624 http://www-1.ibm.com/support/docview.wss?uid=isg1IY77638 http://www.vupen.com/english/advisories/2005/2096 •
CVE-2006-0674
https://notcve.org/view.php?id=CVE-2006-0674
Buffer overflow in the arp command of IBM AIX 5.3 L, 5.3, 5.2.2, 5.2 L, and 5.2 allows local users to cause a denial of service (crash) via a long iftype argument. • http://secunia.com/advisories/18773 http://www-1.ibm.com/support/docview.wss?rs=0&q1=IY81424&uid=isg1IY81424&loc=en_US&cs=utf-8&cc=us&lang=en http://www-1.ibm.com/support/docview.wss?uid=isg1IY81476 http://www.securityfocus.com/bid/16584 http://www.vupen.com/english/advisories/2006/0531 https://exchange.xforce.ibmcloud.com/vulnerabilities/24628 •