« List of all CVEs

CVE-2009-3736

Published: 11/27/2009 Last updated: 8/7/2024 Reserved: 10/22/2009

ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly other products, attempts to open a .la file in the current working directory, which allows local users to gain privileges via a Trojan horse file.

CNA assigner: certcc (37e5125f-f79b-445b-8fad-9564f167944b) Requested by: n/a

Opam packages affected (1)

conf-libtool

Products affected (1)

Product Vendor Version
n/a n/a n/a

References (76)