rexecd for AIX 4.3.3 does not properly use a local copy of the pwd structure when calling getpwnam, which may cause the structure to be overwritten by the authenticate function and assign privileges to the wrong user.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Aix | Ibm | 4.3.3 (including) | 4.3.3 (including) |