CVE-2003-0265: Race Condition
Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2003-0265?
CVE-2003-0265 is classified as a critical vulnerability due to its potential to allow local attackers to gain root privileges.
How do I fix CVE-2003-0265?
To fix CVE-2003-0265, update SAP Database to a version that does not have this vulnerability, preferably above version 7.4.3.7.
What versions are affected by CVE-2003-0265?
CVE-2003-0265 affects SAP database versions 7.3.29 and 7.4.3.7_beta.
Can CVE-2003-0265 be exploited remotely?
No, CVE-2003-0265 can only be exploited locally due to the nature of the vulnerability.
What are the consequences of exploiting CVE-2003-0265?
Exploiting CVE-2003-0265 allows a local attacker to modify critical files and potentially gain root privileges on the system.