Security Advisory
CVE-2005-0261
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
lspath in AIX 5.2, 5.3, and possibly earlier versions, does not drop privileges before processing the -f option, which allows local users to read one line of arbitrary files.