« List of all CVEs

CVE-2009-1894

Published: 7/17/2009 Last updated: 8/7/2024 Reserved: 6/2/2009

Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.

CNA assigner: redhat (53f830b8-0a3f-465b-8143-3b8a9948e749) Requested by: n/a

Opam packages affected (2)

conf-pulseaudio pulseaudio

Products affected (1)

Product Vendor Version
n/a n/a Ashlar-Vellum Graphite v13 Special Edition. Build 13.0.46

References (32)