CVE Vulnerabilities

CVE-2005-0503

Published: Feb 21, 2005 | Modified: Sep 10, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

uim before 0.4.5.1 trusts certain environment variables when libUIM is used in setuid or setgid applications, which allows local users to gain privileges.

Affected Software

Name Vendor Start Version End Version
Uim Uim 0.4.5 (including) 0.4.5 (including)
Mlterm Ubuntu dapper *
Mlterm Ubuntu devel *
Mlterm Ubuntu edgy *
Mlterm Ubuntu feisty *
Uim Ubuntu dapper *
Uim Ubuntu devel *
Uim Ubuntu edgy *
Uim Ubuntu feisty *

References