GNU Libc current is affected by: Re-mapping current loaded library with malicious ELF file. The impact is: In worst case attacker may evaluate privileges. The component is: libld. The attack vector is: Attacker sends 2 ELF files to victim and asks to run ldd on it. ldd execute code. NOTE: Upstream comments indicate "this is being treated as a non-security bug and no real threat.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: dwf
Published:
Updated: 2024-08-05T03:07:18.214Z
Reserved: 2019-03-20T00:00:00
Link: CVE-2019-1010023
Updated: 2024-08-05T03:07:18.214Z
Status : Modified
Published: 2019-07-15T04:15:13.397
Modified: 2024-11-21T04:17:55.643
Link: CVE-2019-1010023
OpenCVE Enrichment
No data.
Weaknesses