{ "CVE_data_meta" : { "ASSIGNER" : "cve@mitre.org", "ID" : "CVE-2008-1595", "STATE" : "PUBLIC" }, "affects" : { "vendor" : { "vendor_data" : [ { "product" : { "product_data" : [ { "product_name" : "n/a", "version" : { "version_data" : [ { "version_value" : "n/a" } ] } } ] }, "vendor_name" : "n/a" } ] } }, "data_format" : "MITRE", "data_type" : "CVE", "data_version" : "4.0", "description" : { "description_data" : [ { "lang" : "eng", "value" : "The proc filesystem in the kernel in IBM AIX 5.2 and 5.3 does not properly enforce directory permissions when a file executing from a directory has weaker permissions than the directory itself, which allows local users to obtain sensitive information." } ] }, "problemtype" : { "problemtype_data" : [ { "description" : [ { "lang" : "eng", "value" : "n/a" } ] } ] }, "references" : { "reference_data" : [ { "name" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4153", "refsource" : "CONFIRM", "url" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4153" }, { "name" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4154", "refsource" : "CONFIRM", "url" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4154" }, { "name" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4155", "refsource" : "CONFIRM", "url" : "http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&ID=4155" }, { "name" : "IZ06022", "refsource" : "AIXAPAR", "url" : "http://www.ibm.com/support/docview.wss?uid=isg1IZ06022" }, { "name" : "IZ06505", "refsource" : "AIXAPAR", "url" : "http://www.ibm.com/support/docview.wss?uid=isg1IZ06505" }, { "name" : "IZ06663", "refsource" : "AIXAPAR", "url" : "http://www.ibm.com/support/docview.wss?uid=isg1IZ06663" }, { "name" : "28467", "refsource" : "BID", "url" : "http://www.securityfocus.com/bid/28467" }, { "name" : "oval:org.mitre.oval:def:5321", "refsource" : "OVAL", "url" : "https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5321" }, { "name" : "ADV-2008-0865", "refsource" : "VUPEN", "url" : "http://www.vupen.com/english/advisories/2008/0865" }, { "name" : "1019606", "refsource" : "SECTRACK", "url" : "http://securitytracker.com/id?1019606" } ] } }