Untrusted search path vulnerability in the wrapper scripts for the (1) rug, (2) zen-updater, (3) zen-installer, and (4) zen-remover programs on SUSE Linux 10.1 and Enterprise 10 allows local users to gain privileges via modified (a) LD_LIBRARY_PATH and (b) MONO_GAC_PREFIX environment variables.
Link | Tags |
---|---|
http://osvdb.org/46783 | vdb entry |
http://www.novell.com/linux/security/advisories/2007_17_sr.html | vendor advisory |
http://secunia.com/advisories/26543 | third party advisory |
http://osvdb.org/46781 | vdb entry |
http://osvdb.org/46784 | vdb entry |
http://osvdb.org/46782 | vdb entry |