CVE-2005-4532

NameCVE-2005-4532
Descriptionscponlyc in scponly 4.1 and earlier, when the operating system supports LD_PRELOAD mechanisms, allows local users to execute arbitrary code with root privileges by creating a chroot directory in their home directory, hard linking to a system setuid application, and using a modified LD_PRELOAD to modify expected function calls in the setuid application.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SuSE, Mageia, GitHub code/issues, web search, more)
ReferencesDSA-969-1
NVD severityhigh (attack range: local)
Debian Bugs344418

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
scponlysource(unstable)4.6-1high344418
scponlysourcesarge4.0-1sarge1highDSA-969-1

Search for package or bug name: Reporting problems