Untrusted search path vulnerability in McAfee VirusScan for Linux 4510e and previous versions includes the current working directory in the DT_RPATH environment variable, which allows local users to load arbitrary ELF DSO libraries and execute arbitrary code by installing malicious libraries in that directory.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mcafee virusscan |