First published: Wed Oct 20 2004(Updated: )
The make_oidjoins_check script in PostgreSQL 7.4.5 and earlier allows local users to overwrite files via a symlink attack on temporary files.
Credit: cve@mitre.org cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
PostgreSQL PostgreSQL | >=7.3.0<7.3.8 | |
PostgreSQL PostgreSQL | >=7.4.0<7.4.6 | |
Mandrakesoft Mandrake Linux | =9.2 | |
Mandrakesoft Mandrake Linux | =9.2 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Mandrakesoft Mandrake Linux | =10.0 | |
Mandrakesoft Mandrake Linux | =10.1 | |
Mandrakesoft Mandrake Linux | =10.1 | |
Mandrakesoft Mandrake Linux Corporate Server | =2.1 | |
Mandrakesoft Mandrake Linux Corporate Server | =2.1 | |
Redhat Enterprise Linux | =3.0 | |
Redhat Enterprise Linux | =3.0 | |
Redhat Enterprise Linux | =3.0 | |
Redhat Enterprise Linux Desktop | =3.0 | |
Trustix Secure Linux | =2.0 | |
Trustix Secure Linux | =2.1 | |
PostgreSQL PostgreSQL | =7.4.3 | |
PostgreSQL PostgreSQL | =7.4.5 | |
PostgreSQL PostgreSQL | =7.2.1 | |
ubuntu/postgresql | <7.5.16.1 | 7.5.16.1 |
ubuntu/postgresql | <7.5.16.1 | 7.5.16.1 |
ubuntu/postgresql-7.4 | <7.4.12-3 | 7.4.12-3 |
ubuntu/postgresql-7.4 | <7.4.12-3 | 7.4.12-3 |
ubuntu/postgresql-8.0 | <8.0.7-2 | 8.0.7-2 |
ubuntu/postgresql-8.1 | <8.1.9-0ubuntu0.6.06 | 8.1.9-0ubuntu0.6.06 |
ubuntu/postgresql-8.1 | <8.1.9-0ubuntu0.6.10 | 8.1.9-0ubuntu0.6.10 |
ubuntu/postgresql-8.1 | <8.1.8-1ubuntu3 | 8.1.8-1ubuntu3 |
ubuntu/postgresql-8.2 | <8.2.4-0ubuntu0.7.04 | 8.2.4-0ubuntu0.7.04 |
debian/postgresql |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.