{"id":"CVE-2020-12050","details":"SQLiteODBC 0.9996, as packaged for certain Linux distributions as 0.9996-4, has a race condition leading to root privilege escalation because any user can replace a /tmp/sqliteodbc$$ file with new contents that cause loading of an arbitrary library.","modified":"2026-03-15T22:30:23.212357Z","published":"2020-04-30T17:15:12.970Z","related":["openSUSE-SU-2020:0612-1","openSUSE-SU-2020:0628-1","openSUSE-SU-2024:11401-1"],"references":[{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PR6B33IGBADGYDBTEEU36OGERER2HOGQ/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PDS5RK7F47BRXHUYRWGMGLYU2GJEVZQA/"},{"type":"WEB","url":"https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WXPHBDVB3LAQUQJCZ4WIS3JWM7JFR56X/"},{"type":"WEB","url":"https://sysdream.com/news/lab/2020-05-25-cve-2020-12050-fedora-red-hat-centos-local-privilege-escalation-through-a-race-condition-in-the-sqliteodbc-installer-script/"},{"type":"WEB","url":"http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00026.html"},{"type":"ADVISORY","url":"http://lists.opensuse.org/opensuse-security-announce/2020-05/msg00013.html"},{"type":"ADVISORY","url":"https://sysdream.com/news/lab/"},{"type":"ADVISORY","url":"http://www.ch-werner.de/sqliteodbc/"},{"type":"REPORT","url":"https://bugzilla.redhat.com/show_bug.cgi?id=1825762"}],"affected":[{"database_specific":{"unresolved_ranges":[{"events":[{"introduced":"0"},{"last_affected":"15.0-sp1"}]},{"events":[{"introduced":"0"},{"last_affected":"30"}]},{"events":[{"introduced":"0"},{"last_affected":"31"}]},{"events":[{"introduced":"0"},{"last_affected":"32"}]},{"events":[{"introduced":"0"},{"last_affected":"0.9996"}]}],"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-12050.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H"}]}