PT-2016-7347 · Teradata · Teradata Virtual Machine Community Edition

Larry W. Cashdollar

+1

·

Published

2016-11-10

·

Updated

2016-12-02

·

CVE-2016-7488

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Teradata Virtual Machine Community Edition version 15.10
Description The issue is related to insecure file permissions on the /etc/luminex/pkgmgr directory. This could allow a local user to modify the directory's contents and potentially execute commands as root.
Recommendations For Teradata Virtual Machine Community Edition version 15.10, consider changing the file permissions on the /etc/luminex/pkgmgr directory to prevent local users from modifying its contents and executing commands as root.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2016-7488

Affected Products

Teradata Virtual Machine Community Edition