|
IBM AIX contains a format string vulnerability in tsm bos.rte.security fileset that may allow a remote user to gain root privileges via login, and local users to gain privileges via login, su, or passwd. The issue is triggered when a username that contains format string specifiers is used. It is possible that the flaw may allow privilege escalation resulting in a loss of integrity.
|