7.4
/ 10
HIGH
CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Description
IBM AIX 7.2, 7.3, IBM VIOS 3.1, and 4.1, when configured to use Kerberos network authentication, could allow a local user to write to files on the system with root privileges due to improper initialization of critical variables.
Basic Information
ID
CVE-2025-36244
Source
ibm
Published
Sep 16, 2025 at 14:38
Modified
Sep 16, 2025 at 16:16
Affected Product
Vendor
IBM
Product
AIX
Version
7.2
Affected Versions
IBM AIX 7.2
IBM AIX 7.3
IBM VIOS 3.1
IBM VIOS 4.1
IBM AIX 7.3
IBM VIOS 3.1
IBM VIOS 4.1