CVE Database
/

CVE-2009-3736

Back to search

CVE-2009-3736

Published: Nov 27, 2009

Modified: Aug 7, 2024

PUBLISHED

Description

ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly other products, attempts to open a .la file in the current working directory, which allows local users to gain privileges via a Trojan horse file.

VendorProductVersions

n/a

n/a

affected
n/a

References

GLSA-201311-10
vendor-advisory
x_refsource_GENTOO
MDVSA-2010:105
vendor-advisory
x_refsource_MANDRIVA
FEDORA-2010-1872
vendor-advisory
x_refsource_FEDORA
MDVSA-2010:091
vendor-advisory
x_refsource_MANDRIVA
39299
third-party-advisory
x_refsource_SECUNIA
38577
third-party-advisory
x_refsource_SECUNIA
38617
third-party-advisory
x_refsource_SECUNIA
MDVSA-2010:035
vendor-advisory
x_refsource_MANDRIVA
37414
third-party-advisory
x_refsource_SECUNIA
55721
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-1924
vendor-advisory
x_refsource_FEDORA
38190
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:6951
vdb-entry
signature
x_refsource_OVAL
FEDORA-2009-12813
vendor-advisory
x_refsource_FEDORA
FEDORA-2011-1967
vendor-advisory
x_refsource_FEDORA
RHSA-2010:0039
vendor-advisory
x_refsource_REDHAT
MDVSA-2009:307
vendor-advisory
x_refsource_MANDRIVA
SUSE-SR:2010:006
vendor-advisory
x_refsource_SUSE
FEDORA-2011-1990
vendor-advisory
x_refsource_FEDORA
43617
third-party-advisory
x_refsource_SECUNIA
FEDORA-2011-1958
vendor-advisory
x_refsource_FEDORA
ADV-2011-0574
vdb-entry
x_refsource_VUPEN
37128
vdb-entry
x_refsource_BID
37489
third-party-advisory
x_refsource_SECUNIA
39347
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0095
vendor-advisory
x_refsource_REDHAT
oval:org.mitre.oval:def:11687
vdb-entry
signature
x_refsource_OVAL
38696
third-party-advisory
x_refsource_SECUNIA
37997
third-party-advisory
x_refsource_SECUNIA
38915
third-party-advisory
x_refsource_SECUNIA

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now