LWN.net Logo

glibc: privilege escalation

Package(s):glibc CVE #(s):CVE-2010-3856
Created:October 22, 2010 Updated:January 12, 2011
Description: From the Debian advisory:

Ben Hawkes and Tavis Ormandy discovered that the dynamic loader in GNU libc allows local users to gain root privileges using a crafted LD_AUDIT environment variable.

Alerts:
Debian DSA-2122-2 2011-01-11
Ubuntu USN-1009-2 2011-01-12
Gentoo 201011-01 2010-11-15
Red Hat RHSA-2010:0872-02 2010-11-10
Fedora FEDORA-2010-16641 2010-10-27
Fedora FEDORA-2010-16655 2010-10-27
Slackware SSA:2010-301-01 2010-10-29
SUSE SUSE-SA:2010:052 2010-10-28
openSUSE openSUSE-SU-2010:0912-1 2010-10-28
Mandriva MDVSA-2010:212 2010-10-24
CentOS CESA-2010:0793 2010-10-26
Red Hat RHSA-2010:0793-01 2010-10-25
Ubuntu USN-1009-1 2010-10-22
Debian DSA-2122-1 2010-10-22

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds