Description
gds_lock_mgr in Borland InterBase allows local users to overwrite files and gain privileges via a symlink attack on a "isc_init1.X" temporary file, as demonstrated by modifying the xinetdbd file.
Affected products
- borland_software / interbase4.0 – 4.0
- borland_software / interbase5.0 – 5.0
- borland_software / interbase6.0 – 6.0
- borland_software / interbase6.5 – 6.5