Race condition in libsafe 2.0.16 and earlier, when running in multi-threaded applications, allows attackers to bypass libsafe protection and exploit other vulnerabilities before the _libsafe_die function call is completed.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/395999 | mailing list exploit vendor advisory |
http://www.securityfocus.com/bid/13190 | vdb entry exploit |
http://www.overflow.pl/adv/libsafebypass.txt | exploit vendor advisory |