CVE-2012-3485

Tunnelblick 3.3beta20 and earlier relies on argv[0] to determine the name of an appropriate (1) kernel module pathname or (2) executable file pathname, which allows local users to gain privileges via an execl system call.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:google:tunnelblick:*:*:*:*:*:*:*:*

Information

Published : 2012-08-26 12:55

Updated : 2013-12-12 21:03


NVD link : CVE-2012-3485

Mitre link : CVE-2012-3485


JSON object : View

CWE
CWE-20

Improper Input Validation

Advertisement

dedicated server usa

Products Affected

google

  • tunnelblick