Untrusted search path vulnerability in libX11.so in xfree86, when used in setuid or setgid programs, allows local users to gain root privileges via a modified LD_PRELOAD environment variable that points to a malicious module.
Name | Vendor | Start Version | End Version |
---|---|---|---|
X11r6 | Xfree86_project | 4.1.0 (including) | 4.1.0 (including) |
X11r6 | Xfree86_project | 4.2.0 (including) | 4.2.0 (including) |
Red Hat Linux 7.3 | RedHat | * | |
Red Hat Linux 8.0 | RedHat | * |