Untrusted search path vulnerability in McAfee VirusScan for Linux 4510e and earlier includes the current working directory in the DT_RPATH environment variable, which allows local users to load arbitrary ELF DSO libraries and execute arbitrary code by installing malicious libraries in that directory.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Virusscan | Mcafee | * | 4510e (including) |