CVE-2004-0318 Information

Description

Load Sharing Facility (LSF) 4.x 5.x and 6.x uses the LSF_EAUTH_UID environment variable if it exists instead of the real UID of the user which could allow remote attackers within the local cluster to gain privileges.

Reference

http://marc.info/?l=bugtraq&m=107756600403557&w=2 http://www.securityfocus.com/bid/9724 https://exchange.xforce.ibmcloud.com/vulnerabilities/15278

Share on: