CVE-2008-1595

The proc filesystem in the kernel in IBM AIX 5.2 and 5.3 does not properly enforce directory permissions when a file executing from a directory has weaker permissions than the directory itself, which allows local users to obtain sensitive information.

Date published : 2008-03-31

http://www.ibm.com/support/docview.wss?uid=isg1IZ06022

http://www.ibm.com/support/docview.wss?uid=isg1IZ06505