CVE-2005-4595: High severity Gentoo nView vulnerability
Published Dec 31, 2005
·Updated
Untrusted search path vulnerability (RPATH) in XnView 1.70 and NView 4.51 on Gentoo Linux allows local users to execute arbitrary code via a malicious library in the current working directory.
Affected Software
2 affected components
Gentoo nView=4.51
Gentoo XnView=1.70
Remediation
Patch Available
Patch Available
Event History
Dec 31, 2005
CVE Published
05:00 AM
Jan 2, 2006
CVE Published
via MITRE·04:00 AM
Data Sourced
via MITRE·04:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-4595?
CVE-2005-4595 has been rated as a medium severity vulnerability due to its potential for arbitrary code execution.
2
How do I fix CVE-2005-4595?
To fix CVE-2005-4595, you should update to the latest versions of XnView and NView available from Gentoo.
3
Who is affected by CVE-2005-4595?
CVE-2005-4595 affects local users running XnView 1.70 and NView 4.51 on Gentoo Linux.
4
What type of vulnerability is CVE-2005-4595?
CVE-2005-4595 is classified as an untrusted search path vulnerability.
5
What can attackers do with CVE-2005-4595?
Attackers can exploit CVE-2005-4595 to execute arbitrary code by placing a malicious library in the current working directory.