{ "CVE_data_meta": { "ASSIGNER": "cve@mitre.org", "ID": "CVE-2020-12050", "STATE": "PUBLIC" }, "affects": { "vendor": { "vendor_data": [ { "product": { "product_data": [ { "product_name": "n/a", "version": { "version_data": [ { "version_value": "n/a" } ] } } ] }, "vendor_name": "n/a" } ] } }, "data_format": "MITRE", "data_type": "CVE", "data_version": "4.0", "description": { "description_data": [ { "lang": "eng", "value": "SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privilege escalation because any user can replace a /tmp/sqliteodbc$$ file with new contents that cause loading of an arbitrary library." } ] }, "problemtype": { "problemtype_data": [ { "description": [ { "lang": "eng", "value": "n/a" } ] } ] }, "references": { "reference_data": [ { "url": "https://sysdream.com/news/lab/", "refsource": "MISC", "name": "https://sysdream.com/news/lab/" }, { "url": "http://www.ch-werner.de/sqliteodbc/", "refsource": "MISC", "name": "http://www.ch-werner.de/sqliteodbc/" }, { "refsource": "FEDORA", "name": "FEDORA-2020-1e85425a52", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PR6B33IGBADGYDBTEEU36OGERER2HOGQ/" }, { "refsource": "FEDORA", "name": "FEDORA-2020-c98c7da2f6", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/WXPHBDVB3LAQUQJCZ4WIS3JWM7JFR56X/" }, { "refsource": "CONFIRM", "name": "https://bugzilla.redhat.com/show_bug.cgi?id=1825762", "url": "https://bugzilla.redhat.com/show_bug.cgi?id=1825762" }, { "refsource": "FEDORA", "name": "FEDORA-2020-df7c647fa3", "url": "https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PDS5RK7F47BRXHUYRWGMGLYU2GJEVZQA/" }, { "refsource": "SUSE", "name": "openSUSE-SU-2020:0612", "url": "http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00013.html" }, { "refsource": "SUSE", "name": "openSUSE-SU-2020:0628", "url": "http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00026.html" }, { "refsource": "MISC", "name": "https://sysdream.com/news/lab/2020-05-25-cve-2020-12050-fedora-red-hat-centos-local-privilege-escalation-through-a-race-condition-in-the-sqliteodbc-installer-script/", "url": "https://sysdream.com/news/lab/2020-05-25-cve-2020-12050-fedora-red-hat-centos-local-privilege-escalation-through-a-race-condition-in-the-sqliteodbc-installer-script/" } ] } }