4.6
CVSSv2

CVE-2002-0512

Published: 12/08/2002 Updated: 05/09/2008
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

startkde in KDE for Caldera OpenLinux 2.3 up to and including 3.1.1 sets the LD_LIBRARY_PATH environment variable to include the current working directory, which could allow local users to gain privileges of other users running startkde via Trojan horse libraries.

Vulnerable Product Search on Vulmon Subscribe to Product

caldera openlinux server 3.1.1

caldera openlinux workstation 3.1.1