Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13069
HistoryJan 15, 2019 - 9:25 a.m.

Privilege Escalation

2019-01-1509:25:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
12

0.001 Low

EPSS

Percentile

35.9%

glibc is vulnerable to privilege escalation attacks. The vulnerability exists as elf/dl-load.c in the GNU C Library (aka glibc or libc6) 2.19 through 2.26 mishandles RPATH and RUNPATH containing $ORIGIN for a privileged (setuid or AT_SECURE) program, which allows local users to gain privileges via a Trojan horse library in the current working directory, related to the fillin_rpath and decompose_rpath functions. This is associated with misinterpretion of an empty RPATH/RUNPATH token as the “./” directory. NOTE: this configuration of RPATH/RUNPATH for a privileged program is apparently very uncommon; most likely, no such program is shipped with any common Linux distribution.

CPENameOperatorVersion
glibceq2.17__222.el7

References