Untrusted search path vulnerability in a certain Red Hat build script for OpenOffice.org (OOo) 1.1.x on Red Hat Enterprise Linux (RHEL) 3 and 4 allows local users to gain privileges via a malicious library in the current working directory, related to incorrect quoting of the ORIGIN symbol for use in the RPATH library path.
Weaknesses in this category are typically introduced during the configuration of the software.
Link | Tags |
---|---|
https://bugzilla.redhat.com/show_bug.cgi?id=450532 | |
http://secunia.com/advisories/30633 | third party advisory vendor advisory |
http://www.securityfocus.com/bid/29695 | vdb entry |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11361 | vdb entry signature |
https://exchange.xforce.ibmcloud.com/vulnerabilities/43322 | vdb entry |
http://www.redhat.com/support/errata/RHSA-2008-0538.html | vendor advisory |
http://securitytracker.com/id?1020278 | vdb entry |