CVE-2009-1786

IBM Aix - Race Condition

Title source: rule

Description

The malloc subsystem in libc in IBM AIX 5.3 and 6.1 allows local users to create or overwrite arbitrary files via a symlink attack on the log file associated with the MALLOCDEBUG environment variable.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Affix · bashlocalaix
https://www.exploit-db.com/exploits/9306
exploitdb WORKING POC VERIFIED
by inking · textwebappsphp
https://www.exploit-db.com/exploits/33001

Scores

EPSS 0.0016
EPSS Percentile 36.5%

Details

CWE
CWE-362
Status published
Products (2)
ibm/aix 5.3
ibm/aix 6.1
Published May 26, 2009
Tracked Since Feb 18, 2026