The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file associated with the MALLOCDEBUG environment variable.
References
Configurations
History
No history.
Information
Published : 2009-05-26 15:30
Updated : 2025-04-09 00:30
NVD link : CVE-2009-1786
Mitre link : CVE-2009-1786
CVE.ORG link : CVE-2009-1786
JSON object : View
Products Affected
ibm
- aix
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')