Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-3376

Опубликовано: 20 окт. 2010
Источник: ubuntu
Приоритет: low
CVSS2: 6.9

Описание

The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ROOT 5.18/00 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

РелизСтатусПримечание
dapper

DNE

devel

not-affected

5.34.00-1
hardy

DNE

jaunty

ignored

end of life
karmic

ignored

end of life
lucid

ignored

end of life
maverick

ignored

end of life
natty

DNE

oneiric

DNE

precise

DNE

Показывать по

Ссылки на источники

6.9 Medium

CVSS2

Связанные уязвимости

nvd
около 15 лет назад

The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ROOT 5.18/00 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

debian
около 15 лет назад

The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ...

github
больше 3 лет назад

The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ROOT 5.18/00 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

6.9 Medium

CVSS2