← Voltar para CVEs
CVE-2008-3389
N/ADescricao
Stack-based buffer overflow in the libbecompat library in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges by setting a long value of an environment variable before running (1) verifydb, (2) iimerge, or (3) csreport.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado8/5/2008
Ultima modificacao4/23/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
hp:hp-uxingres:ingreslinux:linux_kernel
Fraquezas (CWE)
CWE-119
Referencias
http://secunia.com/advisories/31357(cve@mitre.org)
http://secunia.com/advisories/31398(cve@mitre.org)
http://securitytracker.com/id?1020615(cve@mitre.org)
http://www.ingres.com/support/security-alert-080108.php(cve@mitre.org)
http://www.securityfocus.com/archive/1/495177/100/0/threaded(cve@mitre.org)
http://www.securityfocus.com/bid/30512(cve@mitre.org)
http://www.vupen.com/english/advisories/2008/2292(cve@mitre.org)
http://www.vupen.com/english/advisories/2008/2313(cve@mitre.org)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44179(cve@mitre.org)
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=732(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31357(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/31398(af854a3a-2127-422b-91ae-364da2661108)
http://securitytracker.com/id?1020615(af854a3a-2127-422b-91ae-364da2661108)
http://www.ingres.com/support/security-alert-080108.php(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/archive/1/495177/100/0/threaded(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/30512(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2008/2292(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2008/2313(af854a3a-2127-422b-91ae-364da2661108)
https://exchange.xforce.ibmcloud.com/vulnerabilities/44179(af854a3a-2127-422b-91ae-364da2661108)
https://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=181989(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.