PT-2016-7347 · Teradata · Teradata Virtual Machine Community Edition
Larry W. Cashdollar
+1
·
Published
2016-11-10
·
Updated
2016-12-02
·
CVE-2016-7488
CVSS v3.1
7.8
High
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Teradata Virtual Machine Community Edition version 15.10
Description
The issue is related to insecure file permissions on the /etc/luminex/pkgmgr directory. This could allow a local user to modify the directory's contents and potentially execute commands as root.
Recommendations
For Teradata Virtual Machine Community Edition version 15.10, consider changing the file permissions on the /etc/luminex/pkgmgr directory to prevent local users from modifying its contents and executing commands as root.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Teradata Virtual Machine Community Edition