|
|
Subscribe / Log in / New account

banshee: privilege escalation

Package(s):banshee CVE #(s):CVE-2010-3998
Created:November 12, 2010 Updated:February 5, 2014
Description: From the CVE entry:

The (1) banshee-1 and (2) muinshee scripts in Banshee 1.8.0 and earlier place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

Alerts:
Gentoo 201402-05 banshee 2014-02-05
Mandriva MDVSA-2011:034 banshee 2011-02-21
Fedora FEDORA-2010-16907 banshee 2010-10-28
Fedora FEDORA-2010-16916 banshee 2010-10-28
Fedora FEDORA-2010-17021 banshee 2010-10-31

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds