Security Advisory

CVE-2003-0265

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2003-05-08 04:00:00
Last updated 2024-08-08 01:50:47
Assigner mitre
State PUBLISHED

Description

Race condition in SDBINST for SAP database 7.3.0.29 creates critical files with world-writable permissions before initializing the setuid bits, which allows local attackers to gain root privileges by modifying the files before the permissions are changed.