CVE-2007-3337

wakeup in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (Computer Associates) products, allows local users to truncate arbitrary files via a symlink attack on the alarmwkp.def file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ingres:database_server:2.5:*:*:*:*:*:*:*
cpe:2.3:a:ingres:database_server:2.6:*:*:*:*:*:*:*
cpe:2.3:a:ingres:database_server:9.0.4:*:*:*:*:*:*:*
cpe:2.3:a:ingres:database_server:r3:*:*:*:*:*:*:*

History

No history.

Information

Published : 2007-06-22 18:30

Updated : 2024-02-28 11:01


NVD link : CVE-2007-3337

Mitre link : CVE-2007-3337

CVE.ORG link : CVE-2007-3337


JSON object : View

Products Affected

ingres

  • database_server