Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Untrusted search path vulnerability in ingvalidpw in Ingres 2.6, Ingres 2006 release 1 (aka 9.0.4), and Ingres 2006 release 2 (aka 9.1.0) on Linux and HP-UX allows local users to gain privileges via a crafted shared library, related to a "pointer overwrite vulnerability."
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
CA Ingres ingvalidpw 权限许可和访问控制漏洞
Vulnerability Description
Ingres是美国加利福尼亚大学柏克莱分校的一款数据库系统。 Ingres多个版本(Ingres 2.6, Ingres 2006 release1及release2 )中的ingvalidpw程序由于不可信的搜索路径而导致本地权限提升漏洞。在加载共享库时,ingvalidpw程序会加载用户目录中的库,本地用户可以通过特制的库获取特权。
CVSS Information
N/A
Vulnerability Type
N/A