Untrusted search path vulnerability in libtunepimp-perl 0.4.2-1 in Debian GNU/Linux includes an RPATH value under the /tmp/buildd directory for the tunepimp.so module, which might allow local users to gain privileges by installing malicious libraries in that directory.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/25682 | vdb entry |
http://www.securityfocus.com/bid/17288 | exploit vdb entry patch |
http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=359241 | patch exploit |