CVE-2002-0512: Medium severity Caldera Openlinux Server vulnerability
startkde in KDE for Caldera OpenLinux 2.3 through 3.1.1 sets the LDLIBRARYPATH environment variable to include the current working directory, which could allow local users to gain privileges of other users running startkde via Trojan horse libraries.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2002-0512?
The severity of CVE-2002-0512 is considered moderate due to its potential to allow local users to escalate privileges.
How do I fix CVE-2002-0512?
To fix CVE-2002-0512, you should ensure that the LD_LIBRARY_PATH environment variable does not include the current working directory when running startkde.
Which versions are affected by CVE-2002-0512?
CVE-2002-0512 affects Caldera OpenLinux versions 2.3 through 3.1.1, specifically the OpenLinux Server and Workstation.
Can CVE-2002-0512 be exploited remotely?
CVE-2002-0512 is not remotely exploitable; it requires local access to the affected system.
What applications are impacted by CVE-2002-0512?
The vulnerability impacts the startkde application in KDE running on affected versions of Caldera OpenLinux.