First published: Sat Dec 31 2005(Updated: )
Multiple untrusted search path vulnerabilities in SUSE Linux 10.0 cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) liferea or (2) banshee.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SUSE Linux | =10.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-4791 has a medium severity rating due to the potential for local code execution.
To fix CVE-2005-4791, remove the working directory from the LD_LIBRARY_PATH environment variable.
CVE-2005-4791 specifically affects the Liferea and Banshee applications on SUSE Linux 10.0.
Local users of SUSE Linux 10.0 are impacted by CVE-2005-4791 due to the vulnerabilities in application configurations.
Yes, CVE-2005-4791 is specific to SUSE Linux version 10.0.