[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247862

 
 

909

 
 

194603

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

MDVSA-2008:064 -- Mandriva tomboy

ID: oval:org.secpod.oval:def:301386Date: (C)2012-01-07   (M)2021-07-09
Class: PATCHFamily: unix




A flaw in how tomboy handles LD_LIBRARY_PATH was discovered where by appending paths to LD_LIBRARY_PATH the program would also search the current directory for shared libraries. In directories containing network data, those libraries could be injected into the application. The updated packages have been patched to correct this issue.

Platform:
Mandriva Linux 2007.1
Mandriva Linux 2008.0
Product:
tomboy
Reference:
MDVSA-2008:064
CVE-2005-4790
CVE    1
CVE-2005-4790
CPE    2
cpe:/o:mandriva:linux:2007.1
cpe:/o:mandriva:linux:2008.0

© SecPod Technologies