First published: Sat Aug 31 2002(Updated: )
Buffer overflow in sqlexec for Informix SE-7.25 allows local users to gain root privileges via a long INFORMIXDIR environment variable.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
IBM Informix Dynamic Database Server | =7.25_.uc1_se | |
IBM Informix Dynamic Database Server | =7.25_.uc2_se | |
IBM Informix Dynamic Database Server | =7.25_.uc3_se |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-0905 has a high severity rating due to the potential for local users to gain root privileges.
To fix CVE-2002-0905, you should limit the length of the INFORMIXDIR environment variable or apply any available patches from IBM.
CVE-2002-0905 affects local users of IBM Informix versions 7.25_.uc1_se, 7.25_.uc2_se, and 7.25_.uc3_se.
CVE-2002-0905 is a buffer overflow vulnerability.
CVE-2002-0905 was reported in May 2002.