CVE Vulnerabilities

CVE-2009-3516

Published: Oct 01, 2009 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

gssd in IBM AIX 5.3.x through 5.3.9 and 6.1.0 through 6.1.2 does not properly handle the NFSv4 Kerberos credential cache, which allows local users to bypass intended access restrictions for Kerberized NFSv4 shares via unspecified vectors.

Affected Software

NameVendorStart VersionEnd Version
AixIbm5.3.0 (including)5.3.0 (including)
AixIbm5.3.7 (including)5.3.7 (including)
AixIbm5.3.8 (including)5.3.8 (including)
AixIbm6.1 (including)6.1 (including)
AixIbm6.1.0 (including)6.1.0 (including)
AixIbm6.1.1 (including)6.1.1 (including)
AixIbm6.1.2 (including)6.1.2 (including)

References