Untrusted search path vulnerability in hfkernel in hf 0.7.3 and 0.8 allows local users to gain privileges via a Trojan horse killall program in a directory in the PATH, related to improper handling of the -k option.
References
Configurations
Information
Published : 2008-11-26 15:30
Updated : 2017-08-07 18:30
NVD link : CVE-2008-2378
Mitre link : CVE-2008-2378
JSON object : View
CWE
CWE-264
Permissions, Privileges, and Access Controls
Products Affected
hf
- hf