2.1

CVE-2001-0169

When using the LD_PRELOAD environmental variable in SUID or SGID applications, glibc does not verify that preloaded libraries in /etc/ld.so.cache are also SUID/SGID, which could allow a local user to overwrite arbitrary files by loading a library from /lib or /usr/lib.

Data is provided by the National Vulnerability Database (NVD)
MandrakesoftMandrake Linux Version6.0
MandrakesoftMandrake Linux Version6.1
MandrakesoftMandrake Linux Version7.0
MandrakesoftMandrake Linux Version7.1
MandrakesoftMandrake Linux Version7.2
RedhatLinux Version6.0 Editionalpha
RedhatLinux Version6.0 Editioni386
RedhatLinux Version6.0 Editionsparc
RedhatLinux Version6.1 Editionalpha
RedhatLinux Version6.1 Editioni386
RedhatLinux Version6.1 Editionsparc
RedhatLinux Version6.2 Editionalpha
RedhatLinux Version6.2 Editioni386
RedhatLinux Version6.2 Editionsparc
TrustixSecure Linux Version1.1
TrustixSecure Linux Version1.2
TurbolinuxTurbolinux Version <= 6.0.5
TurbolinuxTurbolinux Version6.1
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.14% 0.309
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 2.1 3.9 2.9
AV:L/AC:L/Au:N/C:N/I:P/A:N