CVE Vulnerabilities

CVE-2005-4790

Published: Dec 31, 2005 | Modified: Oct 30, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.

Affected Software

Name Vendor Start Version End Version
Suse_linux Novell 10.0 (including) 10.0 (including)
Suse_linux Suse 9.3 (including) 9.3 (including)
Tomboy Ubuntu dapper *
Tomboy Ubuntu edgy *
Tomboy Ubuntu feisty *
Tomboy Ubuntu gutsy *
Tomboy Ubuntu upstream *

References