Gentoo Linux Multiple Packages Insecure RUNPATH Vulnerability

Multiple packages in Gentoo Linux are susceptible to an insecure RUNPATH vulnerability. This issue is due to a flaw in the build system that results in insecure RUNPATHs being included in certain binaries.

This vulnerability may result in arbitrary code being executed in the context of users executing the vulnerable executables. This may facilitate privilege escalation.

This issue is only exploitable by users that are members of the 'portage' group.


 

Privacy Statement
Copyright 2010, SecurityFocus