CVE-2001-0573

IBM AIX 4.x - Privilege Escalation via Trojan Horse grep or lslv in User-Controlled Directory

Title source: llm
STIX 2.1

Description

lsfs in AIX 4.x allows a local user to gain additional privileges by creating Trojan horse programs named (1) grep or (2) lslv in a certain directory that is under the user's control, which cause lsfs to access the programs in that directory.

References (4)

Core 4
Core References
Exploit, Patch, Vendor Advisory vendor-advisory x_refsource_aixapar
http://archives.neohapsis.com/archives/aix/2001-q2/0000.html
US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/123651
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/5582
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/7007

Scores

EPSS 0.0048
EPSS Percentile 38.5%

Details

Status published
Products (1)
ibm/aix 4
Published Aug 02, 2001
Tracked Since Feb 18, 2026