Description: A vulnerability has been reported in AIX, which can be exploited by malicious, local users to gain escalated privileges.
The problem is that "man" invokes other binaries without full pathnames. This may be exploited to execute arbitrary code with the privileges of a user running "man" by placing a malicious program in the path.
Solution: Apply APARs.
AIX 5.3.0:
Apply APARs IZ17360 / IZ17390.
AIX 6.1.0:
Apply APARs IZ17177 / IZ17372.
Provided and/or discovered by: Reported by the vendor.
Changelog: 2008-03-12: Added CVE reference. Added AIX 5.x to list of affected products. Updated Solution with additional APARs for AIX 5.3.0 and 6.1.0. Added links to IBM
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.
Ideas, suggestions, and other feedback are most welcome.