Security Advisory

CVE-2005-4790

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2006-04-26 22:00:00
Last updated 2024-08-08 00:01:22
Assigner mitre
State PUBLISHED

Description

Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.