Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wxmg-r7qv-7qf9

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.

glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.

EPSS

Процентиль: 26%
0.00089
Низкий

Связанные уязвимости

nvd
больше 24 лет назад

glibc2 does not properly clear the LD_DEBUG_OUTPUT and LD_DEBUG environmental variables when a program is spawned from a setuid program, which could allow local users to overwrite files via a symlink attack.

EPSS

Процентиль: 26%
0.00089
Низкий