CVE-2001-1041
published 2001-08-31CVE-2001-1041: oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on an Oracle log trace (.trc) file that is…
low2.1CVSS 3.1
AVLACLAuNCNIPAN
oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on an Oracle log trace (.trc) file that is created in an alternate home directory identified by the ORACLE_HOME environment variable.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | database_server | — | — |
| oracle | database_server | — | — |
| oracle | database_server | — | — |
No detection rules found.
No writeups or analysis indexed.
http://marc.info/?l=bugtraq&m=100395579811880&w=2http://marc.info/?l=bugtraq&m=99677282117387&w=2http://otn.oracle.com/deploy/security/pdf/oracle_race.pdfhttp://www.securityfocus.com/bid/3135http://marc.info/?l=bugtraq&m=100395579811880&w=2http://marc.info/?l=bugtraq&m=99677282117387&w=2http://otn.oracle.com/deploy/security/pdf/oracle_race.pdfhttp://www.securityfocus.com/bid/3135
2001-08-31
Published