CVE-2007-4432

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
20/08/2007
Last modified:
09/04/2025

Description

Untrusted search path vulnerability in the wrapper scripts for the (1) rug, (2) zen-updater, (3) zen-installer, and (4) zen-remover programs on SUSE Linux 10.1 and Enterprise 10 allows local users to gain privileges via modified (a) LD_LIBRARY_PATH and (b) MONO_GAC_PREFIX environment variables.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:novell:suse_linux:10.1:*:*:*:*:*:*:*
cpe:2.3:o:suse:suse_linux:10:*:enterprise_desktop:*:*:*:*:*