tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory.
References
Information
Published : 2001-07-18 21:00
Updated : 2008-09-05 13:26
NVD link : CVE-2001-1375
Mitre link : CVE-2001-1375
JSON object : View
CWE
Products Affected
redhat
- linux
conectiva
- linux