PT-2008-1140 · Actian · Ingres

Publicado

2008-08-01

·

Atualizado

2020-09-28

·

CVE-2008-3357

CVSS v2.0

7.2

Alta

VetorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Ingres versions 2.6, 9.0.4, and 9.1.0
Description The issue is related to an untrusted search path vulnerability in the ingvalidpw utility of the Ingres database management system. This vulnerability allows local users to gain privileges via a crafted shared library. The vulnerability is also described as a "pointer overwrite vulnerability" and can be exploited by loading shared libraries from a user-owned directory, potentially allowing an attacker to elevate their privileges and execute arbitrary code with root privileges using a specially crafted library.
Recommendations For Ingres version 2.6, update to a fixed version to resolve the issue. For Ingres version 9.0.4, update to a fixed version to resolve the issue. For Ingres version 9.1.0, update to a fixed version to resolve the issue. As a temporary workaround, consider restricting access to the ingvalidpw utility until a patch is available.

Correção

Untrusted Search Path

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

BDU:2018-00185
CVE-2008-3357

Produtos afetados

Ingres