The GetInstalledPackages function in the configuration tool in HP Application Lifestyle Management (ALM) 11 on AIX, HP-UX, and Solaris allows local users to gain privileges via (1) a Trojan horse /tmp/tmp.txt FIFO or (2) a symlink attack on /tmp/tmp.txt.
References
Configurations
Configuration 1 (hide)
AND |
|
Information
Published : 2011-12-14 19:57
Updated : 2018-10-09 12:33
NVD link : CVE-2011-4834
Mitre link : CVE-2011-4834
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
ibm
- aix
hp
- hp-ux
- application_lifestyle_management
sun
- sunos