Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-12-30 21:00
Updated : 2018-10-30 09:25
NVD link : CVE-2005-4790
Mitre link : CVE-2005-4790
JSON object : View
CWE
Products Affected
suse
- suse_linux
novell
- suse_linux