CVE-2016-7490

Publication date

2016-11-10 16:00:00

Family

larry_cashdollar

State

PUBLISHED

Description

The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber system files or perhaps elevate privileges.