|
|
| |
|
| |
apache: privilege escalation
| Package(s): | apache |
CVE #(s): | CVE-2012-0883
|
| Created: | June 25, 2012 |
Updated: | February 12, 2013 |
| Description: |
From the CVE entry:
envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl. |
| Alerts: |
|
( Log in to post comments)
|
|
|