CVE-2005-4280: High severity Kitware Cmake vulnerability
Untrusted search path vulnerability in CMake before 2.2.0-r1 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-4280?
CVE-2005-4280 is considered a high severity vulnerability due to its potential to allow local users to gain elevated privileges.
Who is affected by CVE-2005-4280?
Local users in the portage group on Gentoo Linux systems utilizing vulnerable versions of CMake are affected by CVE-2005-4280.
How do I fix CVE-2005-4280?
To resolve CVE-2005-4280, update CMake to version 2.2.0 or later, as these versions have addressed the vulnerability.
What software versions are vulnerable to CVE-2005-4280?
CVE-2005-4280 affects CMake versions prior to 2.2.0 on Gentoo Linux.
What type of vulnerability is CVE-2005-4280?
CVE-2005-4280 is an untrusted search path vulnerability that exploits the RUNPATH during the build process.