CVE-2008-3389
05.08.2008, 19:41
Stack-based buffer overflow in the libbecompat library in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges by setting a long value of an environment variable before running (1) verifydb, (2) iimerge, or (3) csreport.Enginsight
Vendor | Product | Version |
---|---|---|
ingres | ingres | 2.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References