Computer Security
[EN] securityvulns.ru no-pyccku


dstat privilege escalation
Published:26.11.2009
Source:
SecurityVulns ID:10425
Type:remote
Threat Level:
4/10
Description:share libraries are searched in the working directory.
Affected:DSTAT : dstat 0.6
CVE:CVE-2009-3894 (Multiple untrusted search path vulnerabilities in dstat before 0.7.0 allow local users to gain privileges via a Trojan horse Python module in (1) the current working directory or (2) a certain subdirectory of the current working directory.)
Original documentdocumentGENTOO, [resent] [ GLSA 200911-04 ] dstat: Untrusted search path (26.11.2009)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod