CVE Vulnerabilities

CVE-2007-3337

Published: Jun 22, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.1 LOW
AV:L/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

wakeup in Ingres database server 2006 9.0.4, r3, 2.6, and 2.5, as used in multiple CA (Computer Associates) products, allows local users to truncate arbitrary files via a symlink attack on the alarmwkp.def file.

Affected Software

NameVendorStart VersionEnd Version
Database_serverIngres2.5 (including)2.5 (including)
Database_serverIngres2.6 (including)2.6 (including)
Database_serverIngres9.0.4 (including)9.0.4 (including)
Database_serverIngresr3 (including)r3 (including)

References