Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-3389 (Ingres)

BugsAlert Home > CVE-2008-3389 (Ingres)
 
 

Stack-based buffer overflow in the libbecompat library in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges by setting a long value of an environment variable before running (1) verifydb, (2) iimerge, or (3) csreport.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-3389

Learn more about CVE-2008-3389 (Ingres)
 
Tags: cve-2008-3389 ingres

Related Items

      Bugtraq: [USN-605-1] Thunderbird vulnerabilities

      Matterdaddy Market "index.php" SQL Injection

      Bugtraq: Team SHATTER Security Advisory: Oracle Database multiple SQL Injection vulnerabilities in Workspace Manager

      FrSIRT - Debian Security Update Fixes Enscript Buffer Overflow Vulnerabilities

      Debian: New wordnet packages fix arbitrary code execution

      Bugtraq: rPSA-2008-0306-1 libxslt

      Xoops XM-Memberstats Module "letter" and "sortby" SQL Injection

 

Pixel