CVE-2005-4442
Published Dec 21, 2005
Last updated 16 years ago
Overview
- Description
- Untrusted search path vulnerability in OpenLDAP before 2.2.28-r3 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.2
- Impact score
- 10
- Exploitability score
- 3.9
- Vector string
- AV:L/AC:L/Au:N/C:C/I:C/A:C
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Social media
- Hype score
- Not currently trending
Vendor comments
- Red HatThis issue did not affect the versions of OpenLDAP as distributed with Red Hat Enterprise Linux 2.1, 3, or 4.
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:openldap:openldap:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "09146840-8A3C-4686-B8F8-2592EA9C5989", "versionEndIncluding": "2.2.28_r2" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "149EBFB7-B58F-4557-8E46-6DF88BB5E57E" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "03D75A36-41C4-464F-8DC4-42C841ABC087" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1C3EE919-D05C-4625-85FE-132F6F2B932C" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "20D99A58-8D7E-4586-A9BF-1DD2A1DBB8D3" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DEBA0118-545E-4D7B-B819-34D157B2BA6D" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67826609-F4CA-42CB-A5D0-B4503DDE2C92" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61676BBD-95B8-44C9-BD66-79F00381BF86" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "719A9B1D-8E32-461F-BCD4-F72C6AD3E63E" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BFD73969-39F8-4849-AF6A-15ACDC2E4537" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DB8C1DD2-865A-4CF2-8137-3C40C01C9EAC" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE38B045-2224-43D1-8618-0885505865C6" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5D26DAC5-EDBD-42D8-A877-1E6EA666D72B" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "67B0A2B6-C560-4AE0-BC79-3C7BC9163EE0" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "566406CE-368A-4799-A112-E5DFC5B333D7" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E5CCC734-C15B-4D2B-BF83-F214F807C44E" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64796893-A90D-4B7D-BDBC-0087B57AF7E5" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39914C6A-F4DB-43CC-B2B6-097365E55D34" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5BFDD8F7-AAFD-453F-99A4-F9C0424EA791" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BFEEAA6-0B50-4644-A183-F5FEE7BD7EEC" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "920FC1DB-95E2-4367-BF20-77D75BD7617D" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28E643F8-005A-4170-8275-8E4AB5C25209" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C8A34C63-C17D-4026-B409-AA9A56529B87" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4EA863B0-A6AB-44BD-84E8-B6C885EFFE10" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "24BFAEC7-6256-4B8F-83F5-60FBD1571936" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "83227371-ACC3-4217-BFF9-0A3AAADD50DD" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "734B8101-BEAC-40AB-81EA-2516CA20BC93" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F0BD5253-FBC9-4384-8FC3-4E384582BE91" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.0.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA73658A-8834-4EC2-8D8F-3A7D1C834669" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "06BCE98E-546C-4852-BAE2-CF525A778B48" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "94284C78-255E-43B7-A33E-FBC25BABEA2A" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4B298BAA-5584-4193-A3DB-31FBB0BD12B2" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "90604A40-A1F5-4F23-9B8C-472E8C794B59" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1418EC80-2F42-4C1B-BA38-CA5BDEF83F4B" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9BC65FE9-348D-4468-A1EF-2AC5C673DB07" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B3A400A0-B9D7-4CB2-82EA-49A599C2B30B" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "65587514-46AB-4D70-B7C2-FBED7F78D13D" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7951BAAB-CB06-4F19-891A-E07E2B3C8701" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "82EC30A1-4150-44DC-89F7-5A64B8CC4A84" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9DF04D97-A561-427B-9891-A1423B86F164" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1E74B0C8-2D64-4BF2-B152-87909E3029EB" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "88F6CA0B-ED91-4085-8EE0-1F4256747621" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B90657E7-D651-4E1E-8035-13A1F024E3C2" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BBE5477-BE27-412A-9BA9-9690F746B4F4" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "31300FA3-C57D-4564-927E-B06C0229BE8B" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "342E414D-8ED6-4E5A-88F0-57B5846A3EB8" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7C0BD0FD-BD80-4197-8479-BBB070DAB890" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FC9CA4EF-61F1-407B-B2BF-B4AFD68F50BE" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB80C814-5B28-46CC-8237-70A558BF049C" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "832AC063-6004-4A78-A964-45906361F9C3" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E7C40DFD-4FB8-40AA-ABA4-194DED1241A4" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "992733F2-000F-4E27-8D19-AF18543E57BB" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B36E0E49-D908-4A19-A621-6E7FB3E59A18" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74779CA2-6741-4053-8C23-98A1F938B264" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "930DAA18-113F-42B0-8382-8579575D238F" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "98F50353-EBFB-4DE5-8D35-80C672A12E41" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "18A4F43F-8E4F-4203-B640-02BBB28052A4" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.1.30:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "28063C54-EE5E-44EC-8D47-E880C2BB45BF" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0F611094-500A-4306-8C15-4878135FA45D" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "32096DE5-3F2C-4FF7-BDC6-E316DFDC97A7" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FE197F27-CB34-4B0E-A30A-C9C87295AAD3" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10A4256F-EC89-425F-86FD-B0DE243EBF2C" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4A34127E-507D-4F72-9F93-B23F91DB0F53" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B7A2D5D9-3E7E-4420-A338-B05A8C077229" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C76EF100-3328-4C70-A123-50A4ECFF539E" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1DCE7803-E652-4A17-8EEB-B91C81CF48E5" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DA5CB439-5F0B-40CF-8564-6875CAC74FCD" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB5E524E-1B71-46B5-A14E-C2342851C0FD" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FE103338-9AE7-4230-A8B2-09273004B4D1" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "12621DED-ABF1-47A7-961C-E6DE1F6302AA" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C8026929-4845-46E4-A6F8-E60CA498201B" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DE01BD68-D6DC-4220-A3F0-71961CEA205F" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68DE3F16-E171-4FA3-9B00-3F944A4E7604" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "63F7B718-0E5C-4900-A5DE-D59D37EC79D7" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B8805A0-F543-450D-82E9-EE923904E2A8" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "58779045-578C-41D5-9CAE-D6F48C91654C" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "969F18EF-067A-47BA-9DC4-9FA69D9DCBB7" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E12766AB-2AFE-4BBD-8B80-8BEA932ABDFE" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6C2C7514-8BB4-4B8A-A5AF-D4A26B232597" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "64C0AB94-ED91-4218-8F97-862BA57D1CC8" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E2FF5C05-0A64-416C-8346-EE5FF4AA14F2" }, { "criteria": "cpe:2.3:a:openldap:openldap:2.2.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5C081128-2846-4257-B822-10AADE54899D" } ], "operator": "OR" } ] } ]