CVE-2008-3357: High severity actian ingres vulnerability
Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges via a crafted shared library, related to a "pointer overwrite vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3357?
CVE-2008-3357 is classified as a high-severity vulnerability due to its potential to allow local users to gain elevated privileges.
How do I fix CVE-2008-3357?
To fix CVE-2008-3357, you should update Ingres to a patched version that addresses this vulnerability.
Which software is affected by CVE-2008-3357?
CVE-2008-3357 affects Ingres versions 2.6, 9.0.4, and 9.1.0 on Linux and HP-UX systems.
What type of vulnerability is CVE-2008-3357?
CVE-2008-3357 is an untrusted search path vulnerability that can be exploited via a crafted shared library.
Can CVE-2008-3357 be exploited remotely?
No, CVE-2008-3357 requires local access to the system to be exploited.