PT-2008-1140 · Actian · Ingres

Published

2008-08-01

·

Updated

2020-09-28

·

CVE-2008-3357

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Ingres versions 2.6, 9.0.4, and 9.1.0
Description The issue is related to an untrusted search path vulnerability in the ingvalidpw utility of the Ingres database management system. This vulnerability allows local users to gain privileges via a crafted shared library. The vulnerability is also described as a "pointer overwrite vulnerability" and can be exploited by loading shared libraries from a user-owned directory, potentially allowing an attacker to elevate their privileges and execute arbitrary code with root privileges using a specially crafted library.
Recommendations For Ingres version 2.6, update to a fixed version to resolve the issue. For Ingres version 9.0.4, update to a fixed version to resolve the issue. For Ingres version 9.1.0, update to a fixed version to resolve the issue. As a temporary workaround, consider restricting access to the ingvalidpw utility until a patch is available.

Fix

Untrusted Search Path

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-00185
CVE-2008-3357

Affected Products

Ingres