Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rx3q-2fm4-m96h

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.

Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.

EPSS

Процентиль: 42%
0.00195
Низкий

Связанные уязвимости

nvd
больше 22 лет назад

Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.

EPSS

Процентиль: 42%
0.00195
Низкий