CVE Vulnerabilities

CVE-2009-4081

Published: Nov 29, 2009 | Modified: Dec 31, 2009
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.4 MEDIUM
AV:L/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

Untrusted search path vulnerability in dstat before r3199 allows local users to gain privileges via a Trojan horse Python module in the current working directory, a different vulnerability than CVE-2009-3894.

Affected Software

Name Vendor Start Version End Version
Dstat Dag.wieers * 0.6.9 (including)
Dstat Dag.wieers 0.1 (including) 0.1 (including)
Dstat Dag.wieers 0.2 (including) 0.2 (including)
Dstat Dag.wieers 0.3 (including) 0.3 (including)
Dstat Dag.wieers 0.4 (including) 0.4 (including)
Dstat Dag.wieers 0.5 (including) 0.5 (including)
Dstat Dag.wieers 0.5.2 (including) 0.5.2 (including)
Dstat Dag.wieers 0.5.3 (including) 0.5.3 (including)
Dstat Dag.wieers 0.5.4 (including) 0.5.4 (including)
Dstat Dag.wieers 0.5.5 (including) 0.5.5 (including)
Dstat Dag.wieers 0.5.6 (including) 0.5.6 (including)
Dstat Dag.wieers 0.5.7 (including) 0.5.7 (including)
Dstat Dag.wieers 0.5.8 (including) 0.5.8 (including)
Dstat Dag.wieers 0.5.9 (including) 0.5.9 (including)
Dstat Dag.wieers 0.5.10 (including) 0.5.10 (including)
Dstat Dag.wieers 0.6.0 (including) 0.6.0 (including)
Dstat Dag.wieers 0.6.1 (including) 0.6.1 (including)
Dstat Dag.wieers 0.6.2 (including) 0.6.2 (including)
Dstat Dag.wieers 0.6.3 (including) 0.6.3 (including)
Dstat Dag.wieers 0.6.4 (including) 0.6.4 (including)
Dstat Dag.wieers 0.6.5 (including) 0.6.5 (including)
Dstat Dag.wieers 0.6.6 (including) 0.6.6 (including)
Dstat Dag.wieers 0.6.7 (including) 0.6.7 (including)
Dstat Dag.wieers 0.6.8 (including) 0.6.8 (including)
Dstat Ubuntu dapper *
Dstat Ubuntu hardy *
Dstat Ubuntu intrepid *
Dstat Ubuntu jaunty *
Dstat Ubuntu karmic *
Dstat Ubuntu upstream *

References