CVE-2001-0832

Vulnerability in Oracle 8.0.x through 9.0.1 on Unix allows local users to overwrite arbitrary files, possibly via a symlink attack or incorrect file permissions in (1) the ORACLE_HOME/rdbms/log directory or (2) an alternate directory as specified in the ORACLE_HOME environmental variable, aka the "Oracle File Overwrite Security Vulnerability."
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:oracle:database_server:*:*:*:*:*:*:*:*
cpe:2.3:a:oracle:database_server:8.0:*:*:*:*:*:*:*
cpe:2.3:a:oracle:database_server:8.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:36

Type Values Removed Values Added
References () http://marc.info/?l=bugtraq&m=100386756715645&w=2 - () http://marc.info/?l=bugtraq&m=100386756715645&w=2 -
References () http://otn.oracle.com/deploy/security/pdf/oracle_race.pdf - Patch, Vendor Advisory () http://otn.oracle.com/deploy/security/pdf/oracle_race.pdf - Patch, Vendor Advisory

Information

Published : 2001-12-06 05:00

Updated : 2024-11-20 23:36


NVD link : CVE-2001-0832

Mitre link : CVE-2001-0832

CVE.ORG link : CVE-2001-0832


JSON object : View

Products Affected

oracle

  • database_server