Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: 2nd attempt: AIX techlibss follows links

2nd attempt: AIX techlibss follows links

From: <Klaus.Kusche_at_OOE.GV.AT>
Date: Mon, 10 Jan 2000 09:20:46 +0100

2nd attempt:

"techlibss" is the program used to install IBM's monthly AIX service CD's.

The program is run as "root" and creates log files with a fixed name in /tmp
using shell redirection. Hence, it happily follows any existing symbolic
link with that name, blindly overwriting any file the link happens to point
to.

The problem is fixed with the fileset "techlib.service.rte.1.0.0.4" on the
service CD for Jan 2000.

If you have installed an older version of "techlib.service.rte", upgrade
manually (following the instructions on the CD cover), because that fileset
is not updated automatically, even if you choose to automatically update all
installed AIX filesets from the CD.

DI. Dr. Klaus Kusche
Oberoesterreichische Landesregierung / Government of Upper Austria
Rechenzentrum / Computing Centre
Smail: Kaerntnerstrasse 16, A-4020 Linz, Austria (Europe)
Phone: +43 732 7720 - 3394 Fax: +43 732 7720 3198
Email: Klaus.Kusche_at_ooe.gv.at
Received on Jan 10 2000

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos