OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: Patches available for IBM AIX flaws

From: David Litchfield (davidlngssoftware.com)
Date: Thu Dec 15 2005 - 16:58:24 CST


Correction:

> 4) There are arbitrary file data append issues in getShell and getCommand
> in conjuction with specific settings in the malloc debug system.Both
> getShell and getCommand are setuid root.

> Issue 4 affects AIX versions 5.3, 5.2 and 5.1.

Issue 4 affects only AIX 5.3 and not 5.2 and 5.1 as was indicated.
Apologies!
Cheers,
David