First published: Wed Apr 18 2012(Updated: )
envvars (aka envvars-std) in the Apache HTTP Server before 2.4.2 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse DSO in the current working directory during execution of apachectl.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Apache HTTP Server | >=2.2.0<2.2.23 | |
Apache HTTP Server | =2.4.1 | |
openSUSE | =11.4 | |
openSUSE | =12.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-0883 has a medium severity rating due to its potential to allow local users to exploit the vulnerability for privilege escalation.
To fix CVE-2012-0883, update to Apache HTTP Server version 2.4.2 or later, or ensure that the LD_LIBRARY_PATH does not contain zero-length directory entries.
CVE-2012-0883 affects Apache HTTP Server versions prior to 2.4.2, as well as versions 2.2.0 through 2.2.23.
No, CVE-2012-0883 can only be exploited locally by users who have access to execute the Apache HTTP Server.
CVE-2012-0883 facilitates attacks where local users can use a Trojan horse dynamic shared object (DSO) to gain elevated privileges.