CVE-2006-5163: Low severity ibm informix dynamic server vulnerability
IBM Informix Dynamic Server 10.UC3RC1 Trial for Linux and possibly other versions creates /tmp/installserver.txt with insecure permissions, which allows local users to append data to arbitrary files via a symlink attack.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2006-5163?
CVE-2006-5163 is considered a medium severity vulnerability due to its potential for local exploitation.
How do I fix CVE-2006-5163?
To mitigate CVE-2006-5163, you should secure the permissions of the /tmp/installserver.txt file to prevent unauthorized access.
Who is affected by CVE-2006-5163?
CVE-2006-5163 affects users of IBM Informix Dynamic Server 10.UC3RC1 Trial for Linux and potentially other versions.
What type of attack is associated with CVE-2006-5163?
CVE-2006-5163 is associated with a symlink attack, allowing local users to manipulate file access.
What are the consequences of CVE-2006-5163?
The consequences of CVE-2006-5163 include unauthorized data manipulation and potential system compromise by local users.