tcl/tk package (tcltk) 8.3.1 searches for its libraries in the current working directory before other directories, which could allow local users to execute arbitrary code via a Trojan horse library that is under a user-controlled directory.
References
Configurations
History
No history.
Information
Published : 2001-07-19 04:00
Updated : 2008-09-05 20:26
NVD link : CVE-2001-1375
Mitre link : CVE-2001-1375
CVE.ORG link : CVE-2001-1375
JSON object : View
Products Affected
conectiva
- linux
redhat
- linux
CWE