oss-sec mailing list archives
CVE Request (trickle)
From: Josh Bressers <bressers () redhat com>
Date: Thu, 29 Jan 2009 13:53:51 -0500 (EST)
Hi Steve, trickle has what is similar to all the RPATH flaws that got CVE ids a while back: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=513456 It seems it could set a bad LD_PRELOAD path when the trickle command is run. Thanks. -- JB
Current thread:
- CVE Request (trickle) Josh Bressers (Jan 29)