CVE-2007-4393: Medium severity SUSE SuSE Linux vulnerability
Published Aug 17, 2007
·Updated
The installation script for orarun on SUSE Linux before 20070810 places the oracle user into the disk group, which allows the local oracle user to read or write raw disk partitions.
Affected Software
1 affected component
SUSE SuSE Linux
Event History
Aug 17, 2007
CVE Published
10:17 PM
Aug 18, 2007
CVE Published
via MITRE·02:00 AM
Data Sourced
via MITRE·02:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2007-4393?
CVE-2007-4393 is considered a high severity vulnerability due to the potential for unauthorized access to raw disk partitions.
2
How do I fix CVE-2007-4393?
To fix CVE-2007-4393, remove the oracle user from the disk group to prevent unauthorized access to raw disk partitions.
3
What software is affected by CVE-2007-4393?
CVE-2007-4393 affects SUSE Linux installations prior to 20070810.
4
What can an attacker do exploiting CVE-2007-4393?
An attacker exploiting CVE-2007-4393 can read or write raw disk partitions, potentially leading to data loss or corruption.
5
Is CVE-2007-4393 a local or remote vulnerability?
CVE-2007-4393 is a local vulnerability that requires access to the system to exploit.