Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2010-3359

Опубликовано: 12 нояб. 2019
Источник: debian

Описание

If LD_LIBRARY_PATH is undefined in gargoyle-free before 2009-08-25, the variable will point to the current directory. This can allow a local user to trick another user into running gargoyle in a directory with a cracked libgarglk.so and gain access to the user's account.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
gargoyle-freefixed2009-08-25-2package

Примечания

  • http://groups.google.com/group/garglk-dev/browse_thread/thread/1c92ab6f24d5ebe6

Связанные уязвимости

CVSS3: 4.8
ubuntu
около 6 лет назад

If LD_LIBRARY_PATH is undefined in gargoyle-free before 2009-08-25, the variable will point to the current directory. This can allow a local user to trick another user into running gargoyle in a directory with a cracked libgarglk.so and gain access to the user's account.

CVSS3: 4.8
nvd
около 6 лет назад

If LD_LIBRARY_PATH is undefined in gargoyle-free before 2009-08-25, the variable will point to the current directory. This can allow a local user to trick another user into running gargoyle in a directory with a cracked libgarglk.so and gain access to the user's account.

github
больше 3 лет назад

If LD_LIBRARY_PATH is undefined in gargoyle-free before 2009-08-25, the variable will point to the current directory. This can allow a local user to trick another user into running gargoyle in a directory with a cracked libgarglk.so and gain access to the user's account.