oracle program in Oracle 8.0.x, 8.1.x and 9.0.1 allows local users to overwrite arbitrary files via a symlink attack on an Oracle log trace (.trc) file that is created in an alternate home directory identified by the ORACLE_HOME environment variable.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2002-02-02T05:00:00

Updated: 2024-08-08T04:44:06.978Z

Reserved: 2002-01-31T00:00:00

Link: CVE-2001-1041

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2001-08-31T04:00:00.000

Modified: 2016-10-18T02:14:05.430

Link: CVE-2001-1041

cve-icon Redhat

No data.