Svi
Pretraži prema proizvođaču
Pretraži prema CWE oznaci
O usluzi
Pretplate
Jezik
hr
en
CVE-2010-3689 - CERT CVE
CVE-2010-3689
ID
CVE-2010-3689
Sažetak
soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
Reference
http://www.openoffice.org/security/cves/CVE-2010-3689.html
http://secunia.com/advisories/43065
http://www.vupen.com/english/advisories/2011/0230
https://bugzilla.redhat.com/show_bug.cgi?id=641224
http://www.securityfocus.com/bid/46031
http://www.vupen.com/english/advisories/2011/0232
http://www.securitytracker.com/id?1025004
http://secunia.com/advisories/43105
http://www.redhat.com/support/errata/RHSA-2011-0182.html
http://osvdb.org/70716
http://secunia.com/advisories/42999
http://ubuntu.com/usn/usn-1056-1
http://www.vupen.com/english/advisories/2011/0279
http://www.mandriva.com/security/advisories?name=MDVSA-2011:027
http://www.oracle.com/technetwork/topics/security/cpuapr2011-301950.html
http://www.debian.org/security/2011/dsa-2151
http://www.gentoo.org/security/en/glsa/glsa-201408-19.xml
http://secunia.com/advisories/60799
http://secunia.com/advisories/40775
CVSS
Base:
6.9
Impact:
10.0
Exploitability:
3.4
Pristup
Vektor
Složenost
Autentikacija
LOCAL
MEDIUM
NONE
Impact
Povjerljivost
Cjelovitost
Dostupnost
COMPLETE
COMPLETE
COMPLETE
CVSS vektor
AV:L/AC:M/Au:N/C:C/I:C/A:C
Zadnje važnije ažuriranje
07-02-2022 - 16:41
Objavljeno
28-01-2011 - 22:00