CVE Vulnerabilities

CVE-2005-4790

Published: Dec 31, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.9 MEDIUM
AV:L/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0, and possibly other distributions, cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam. NOTE: in August 2007, the tomboy vector was reported for other distributions.

Affected Software

NameVendorStart VersionEnd Version
Suse_linuxNovell10.0 (including)10.0 (including)
Suse_linuxSuse9.3 (including)9.3 (including)
TomboyUbuntudapper*
TomboyUbuntuedgy*
TomboyUbuntufeisty*
TomboyUbuntugutsy*
TomboyUbuntuupstream*

References