CVE-1999-1486 - Documental Boykin Spaniel
Description
sadc in IBM AIX 4.1 through 4.3 when called from programs such as timex that are setgid adm allows local users to overwrite arbitrary files via a symlink attack.
Reference
http://www.securityfocus.com/bid/408 http://techsupport.services.ibm.com/aix/fixes/v4/os/bos.acct.4.3.1.0.info http://www-1.ibm.com/support/search.wss?rs=0&q=IX75554&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IX76853&apar=only http://www-1.ibm.com/support/search.wss?rs=0&q=IX76330&apar=only https://exchange.xforce.ibmcloud.com/vulnerabilities/7675