The installation script studioexpressinstall for Teradata Studio Express 15.12.00.00 creates files in /tmp insecurely. A malicious local user could create a symlink in /tmp and possibly clobber system files or perhaps elevate privileges.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: larry_cashdollar
Published:
Updated: 2024-08-06T01:57:47.636Z
Reserved: 2016-09-09T00:00:00
Link: CVE-2016-7490

No data.

Status : Deferred
Published: 2016-11-10T16:59:04.567
Modified: 2025-04-12T10:46:40.837
Link: CVE-2016-7490

No data.