expect before 5.32 searches for its libraries in /var/tmp before other directories, which could allow local users to gain root privileges via a Trojan horse library that is accessed by mkpasswd.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Information
Published : 2001-07-18 21:00
Updated : 2017-10-09 18:30
NVD link : CVE-2001-1374
Mitre link : CVE-2001-1374
JSON object : View
CWE
Products Affected
redhat
- linux
conectiva
- linux
don_libes
- expect