The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file associated with the MALLOCDEBUG environment variable.
References
Configurations
Information
Published : 2009-05-26 08:30
Updated : 2017-09-28 18:34
NVD link : CVE-2009-1786
Mitre link : CVE-2009-1786
JSON object : View
CWE
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
Products Affected
ibm
- aix