sfcb in sblim-sfcb places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2012-08-17T00:00:00Z
Updated: 2012-08-17T00:00:00Z
Reserved: 2012-06-14T00:00:00Z
Link: CVE-2012-3381
JSON object: View
NVD Information
Status : Analyzed
Published: 2012-08-17T00:55:03.813
Modified: 2012-08-17T14:20:17.543
Link: CVE-2012-3381
JSON object: View
Redhat Information
No data.
CWE