PT-2000-1188 · Oracle · Oracle

Publicado

2000-03-05

·

Atualizado

2008-09-10

·

CVE-2000-0206

CVSS v2.0

6.2

Média

VetorAV:L/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Oracle versions 8.1.5.x
Description The issue allows local users to gain privileges due to the installation of Oracle on Linux following symlinks and creating the orainstRoot.sh file with world-writeable permissions.
Recommendations For Oracle version 8.1.5.x, consider changing the permissions of the orainstRoot.sh file to prevent world-writeable access as a temporary workaround. At the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2000-0206

Produtos afetados

Oracle