Vulnonym.com

CVE-2012-0745 - Austrian Parks

Description

The getpwnam function in IBM AIX 5.3 6.1 and 7.1 and VIOS 2.1.0.10 through 2.2.1.3 does not properly interact with customer-extended LDAP user filtering which allows local users to gain privileges via unspecified vectors.

Reference

http://www.ibm.com/support/docview.wss?uid=isg1IV19098 http://www.ibm.com/support/docview.wss?uid=isg1IV18637 http://www.ibm.com/support/docview.wss?uid=isg1IV19097 http://aix.software.ibm.com/aix/efixes/security/ldapauth_advisory2.asc http://www.ibm.com/support/docview.wss?uid=isg1IV18464 http://www.ibm.com/support/docview.wss?uid=isg1IV18638 http://www.ibm.com/support/docview.wss?uid=isg1IV19077 http://osvdb.org/81683 https://exchange.xforce.ibmcloud.com/vulnerabilities/74679 http://www.securitytracker.com/id?1027021 http://www.securityfocus.com/bid/53393 http://secunia.com/advisories/49073