Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2010-3389

Опубликовано: 20 окт. 2010
Источник: nvd
CVSS2: 6.9
EPSS Низкий

Описание

The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents (aka resource-agents or cluster-agents) 1.0.3 in Linux-HA place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:linux-ha:ocf_resource_agents:1.0.3:*:*:*:*:*:*:*

EPSS

Процентиль: 29%
0.00099
Низкий

6.9 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

ubuntu
больше 14 лет назад

The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents (aka resource-agents or cluster-agents) 1.0.3 in Linux-HA place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

redhat
больше 14 лет назад

The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents (aka resource-agents or cluster-agents) 1.0.3 in Linux-HA place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

debian
больше 14 лет назад

The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents ...

github
около 3 лет назад

The (1) SAPDatabase and (2) SAPInstance scripts in OCF Resource Agents (aka resource-agents or cluster-agents) 1.0.3 in Linux-HA place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

oracle-oval
почти 14 лет назад

ELSA-2011-1000: rgmanager security, bug fix, and enhancement update (LOW)

EPSS

Процентиль: 29%
0.00099
Низкий

6.9 Medium

CVSS2

Дефекты

NVD-CWE-Other