Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2010-3393

Опубликовано: 20 окт. 2010
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.9

Описание

magics-config in Magics++ 2.10.0 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

2.18.15-5
cosmic

not-affected

2.18.15-5
dapper

DNE

devel

not-affected

2.18.15-5
esm-apps-legacy/xenial

not-affected

2.18.15-5
esm-apps/bionic

not-affected

2.18.15-5
esm-apps/xenial

not-affected

2.18.15-5
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [2.18.15-5]]
hardy

DNE

Показывать по

Ссылки на источники

EPSS

Процентиль: 32%
0.00386
Низкий

6.9 Medium

CVSS2

Связанные уязвимости

nvd
почти 16 лет назад

magics-config in Magics++ 2.10.0 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

debian
почти 16 лет назад

magics-config in Magics++ 2.10.0 places a zero-length directory name i ...

github
около 4 лет назад

magics-config in Magics++ 2.10.0 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

EPSS

Процентиль: 32%
0.00386
Низкий

6.9 Medium

CVSS2