Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2000-0206

Overview

Vulnerability Score 6.2 6.2
CVE Id CVE-2000-0206
Last Modified 10 Sep 2008 03:03:18
Published 05 Mar 2000 12:00:00
Confidentiality Impact COMPLETE COMPLETE
Integrity Impact COMPLETE COMPLETE
Availability Impact COMPLETE COMPLETE
Access Vector LOCAL
Access Complexity HIGH
Authentication NONE

CVE-2000-0206

Summary

The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges.

Vulnerable Systems

Application

  • Oracle8i 8.1.5


References

BID - 1035

BUGTRAQ - 20000305 Oracle installer problem


Last Updated: 27 May 2016 10:35:36