CVE-2010-3376: Medium severity cern root vulnerability
The (1) proofserv, (2) xrdcp, (3) xrdpwdadmin, and (4) xrd scripts in ROOT 5.18/00 place a zero-length directory name in the LDLIBRARYPATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3376?
CVE-2010-3376 is considered a high severity vulnerability due to its potential for privilege escalation via local users.
How do I fix CVE-2010-3376?
To fix CVE-2010-3376, update to a patched version of ROOT that does not include zero-length directory names in LD_LIBRARY_PATH.
Who is affected by CVE-2010-3376?
CVE-2010-3376 affects users of ROOT 5.18/00 who utilize the proofserv, xrdcp, xrdpwdadmin, or xrd scripts.
What kind of attack does CVE-2010-3376 enable?
CVE-2010-3376 enables local users to execute a Trojan horse shared library, leading to potential privilege escalation.
Is there a workaround for CVE-2010-3376?
A possible workaround for CVE-2010-3376 includes setting the LD_LIBRARY_PATH to exclude the current working directory.