{ "schema_version": "1.4.0", "id": "GHSA-vgvw-x2pw-8x6h", "modified": "2022-05-01T23:41:41Z", "published": "2022-05-01T23:41:41Z", "aliases": [ "CVE-2008-1599" ], "details": "The nddstat programs on IBM AIX 5.2, 5.3, and 6.1 do not properly handle environment variables, which allows local users to gain privileges by invoking (1) atmstat, (2) entstat, (3) fddistat, (4) hdlcstat, or (5) tokstat.", "severity": [], "affected": [], "references": [ { "type": "ADVISORY", "url": "https://nvd.nist.gov/vuln/detail/CVE-2008-1599" }, { "type": "WEB", "url": "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5468" }, { "type": "WEB", "url": "http://securitytracker.com/id?1019604" }, { "type": "WEB", "url": "http://www.ibm.com/support/docview.wss?uid=isg1IZ16975" }, { "type": "WEB", "url": "http://www.ibm.com/support/docview.wss?uid=isg1IZ16991" }, { "type": "WEB", "url": "http://www.ibm.com/support/docview.wss?uid=isg1IZ17058" }, { "type": "WEB", "url": "http://www.ibm.com/support/docview.wss?uid=isg1IZ17059" }, { "type": "WEB", "url": "http://www.vupen.com/english/advisories/2008/0865" }, { "type": "WEB", "url": "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4156" }, { "type": "WEB", "url": "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4157" }, { "type": "WEB", "url": "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4158" } ], "database_specific": { "cwe_ids": [], "severity": "HIGH", "github_reviewed": false, "github_reviewed_at": null, "nvd_published_at": "2008-03-31T23:44:00Z" } }