CVE-2016-7489: Critical severity teradata virtual machine vulnerability
Published Nov 10, 2016
·Updated
Teradata Virtual Machine Community Edition v15.10's perl script /opt/teradata/gsctools/bin/t2a.pl creates files in /tmp in an insecure manner, this may lead to elevated code execution.
Affected Software
1 affected component
Teradata Virtual Machine=15.10
Event History
Nov 10, 2016
CVE Published
via MITRE·04:00 PM
Data Sourced
via MITRE·04:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2016-7489?
CVE-2016-7489 is classified as a high severity vulnerability due to its potential to allow elevated code execution.
2
How do I fix CVE-2016-7489?
To fix CVE-2016-7489, ensure that the perl script /opt/teradata/gsctools/bin/t2a.pl properly restricts file creation in safe directories.
3
What are the risks associated with CVE-2016-7489?
The risks associated with CVE-2016-7489 include unauthorized code execution and potential takeover of the system.
4
Which software versions are affected by CVE-2016-7489?
CVE-2016-7489 affects Teradata Virtual Machine Community Edition version 15.10.
5
Is CVE-2016-7489 actively exploited in the wild?
As of the last update, there are no specific reports confirming active exploitation of CVE-2016-7489 in the wild.