CVE-2006-0646
Published Feb 11, 2006
Last updated 16 years ago
Overview
- Description
- ld in SUSE Linux 9.1 through 10.0, and SLES 9, in certain circumstances when linking binaries, can leave an empty RPATH or RUNPATH, which allows local attackers to execute arbitrary code as other users via by running an ld-linked application from the current directory, which could contain an attacker-controlled library file.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.4
- Impact score
- 6.4
- Exploitability score
- 3.4
- Vector string
- AV:L/AC:M/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:suse:suse_linux:9.0:*:enterprise_server:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F7446746-87B7-4BD3-AABF-1E0FAA8265AB" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.1:*:personal:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3EA56868-ACA1-4C65-9FFB-A68129D2428A" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.1:*:professional:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1BA2E629-58C6-4BA0-A447-F8F570B35E74" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.1:*:x86_64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D5F98B9A-880E-45F0-8C16-12B22970F0D1" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.2:*:personal:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3BEE15E9-9194-4E37-AB3B-66ECD5AC9E11" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.2:*:professional:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C89BA3B6-370B-4911-A363-935A9C9EACF5" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.2:*:x86_64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B905C6E9-5058-4FD7-95B6-CD6AB6B2F516" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.3:*:personal:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4F1B4D15-0562-44D6-B80B-35A8F432BD41" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.3:*:professional:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D84ABF78-0D85-4E15-907E-B5ACE86EB8C7" }, { "criteria": "cpe:2.3:o:suse:suse_linux:9.3:*:x86_64:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9C7018E7-F90C-435D-A07A-05A294EA2827" }, { "criteria": "cpe:2.3:o:suse:suse_linux:10.0:*:professional:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "994ABCE2-3B9E-4E4E-83F7-CE2A79C70F64" } ], "operator": "OR" } ] } ]