CVE-2008-3357

Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges via a crafted shared library, related to a "pointer overwrite vulnerability."
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:actian:ingres:2.6:*:*:*:*:*:*:*
cpe:2.3:a:actian:ingres:9.0.4:*:*:*:*:*:*:*
cpe:2.3:a:actian:ingres:9.1.0:*:*:*:*:*:*:*
OR cpe:2.3:o:hp:hp-ux:-:*:*:*:*:*:*:*
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

History

No history.

Information

Published : 2008-08-05 19:41

Updated : 2024-02-28 11:21


NVD link : CVE-2008-3357

Mitre link : CVE-2008-3357

CVE.ORG link : CVE-2008-3357


JSON object : View

Products Affected

linux

  • linux_kernel

actian

  • ingres

hp

  • hp-ux
CWE
CWE-426

Untrusted Search Path