CVE-2009-5064
published 2011-03-30CVE-2009-5064: ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified…
PriorityP426medium6.9CVSS 2.0
AVLACMAuNCCICAC
EPSS
0.54%
42.4th percentile
ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc.
Affected
31 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | glibc | < glibc 2.10.1-7 (bookworm) | glibc 2.10.1-7 (bookworm) |
| gnu | glibc | <= 2.1.3 | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | — | — |
| gnu | glibc | >= 0 < 2.10.1-7 | 2.10.1-7 |
CVSS provenance
nvdv2.06.9MEDIUMAV:L/AC:M/Au:N/C:C/I:C/A:C
osv6.9MEDIUM
vendor_debian6.9MEDIUM
vendor_redhat6.9MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VMware
VMware security updates for vCSA, vCenter Server, and ESXi
vendor_vmware·2012-12-20·CVSS 4.0
CVE-2009-5029 [MEDIUM] VMware security updates for vCSA, vCenter Server, and ESXi
VMSA-2012-0018: VMware security updates for vCSA, vCenter Server, and ESXi
a. vCenter Server Appliance directory traversal The vCenter Server Appliance (vCSA) contains a directory traversal vulnerability that allows an authenticated remote user to retrieve arbitrary files. Exploitation of this issue may expose sensitive information stored on the server. VMware would like to thank Alexander Minozhenko from ERPScan for reporting this issue to us. The Common Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name CVE-2012-6324 to this issue. Column 4 of the following table lists the action required to remediate the vulnerability in each release, if a solution is available. VMware Product Product Version Running on Replace with/ Apply Patch VMware Product vCSA Product Vers
Red Hat
glibc: ldd unexpected code execution issue
vendor_redhat·2009-10-26·CVSS 6.9
CVE-2009-5064 [MEDIUM] glibc: ldd unexpected code execution issue
glibc: ldd unexpected code execution issue
ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc.
Debian
CVE-2009-5064: glibc - ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local user...
vendor_debian·2009·CVSS 6.9
CVE-2009-5064 [MEDIUM] CVE-2009-5064: glibc - ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local user...
ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc.
Scope: local
bookworm: resolved (fixed in 2.10.1-7)
bullseye: resolved (fixed in 2.10.1-7)
forky: resolved (fixed in 2.10.1-7)
sid: resolved (fixed in 2.10.1-7)
trixie: resolved (fixed in 2.10.1-7)
GHSA
GHSA-jx79-x2m5-439p: ** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2
ghsa_unreviewed·2022-05-02
CVE-2009-5064 [MEDIUM] GHSA-jx79-x2m5-439p: ** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2
** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc."
OSV
CVE-2009-5064: ldd in the GNU C Library (aka glibc or libc6) 2
osv·2011-03-30·CVSS 6.9
CVE-2009-5064 [MEDIUM] CVE-2009-5064: ldd in the GNU C Library (aka glibc or libc6) 2
ldd in the GNU C Library (aka glibc or libc6) 2.13 and earlier allows local users to gain privileges via a Trojan horse executable file linked with a modified loader that omits certain LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states "This is just nonsense. There are a gazillion other ways to introduce code if people are downloading arbitrary binaries and install them in appropriate directories or set LD_LIBRARY_PATH etc.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2009-5064 glibc: ldd unexpected code execution issue [rhel-6.2]
bugzilla·2011-06-14·CVSS 6.9
CVE-2009-5064 [MEDIUM] CVE-2009-5064 glibc: ldd unexpected code execution issue [rhel-6.2]
CVE-2009-5064 glibc: ldd unexpected code execution issue [rhel-6.2]
Don't include me in crap like that. There is no problem. This is people making crap up.
Discussion:
Since the problem described in this bug report should be
resolved in a recent advisory, it has been closed with a
resolution of ERRATA.
For information on the advisory, and where to find the updated
files, follow the link below.
If the solution does not work for you, open a new bug report.
http://rhn.redhat.com/errata/RHSA-2011-1526.html
Bugzilla
CVE-2009-5064 glibc: ldd unexpected code execution issue
bugzilla·2011-03-31·CVSS 6.9
CVE-2009-5064 [MEDIUM] CVE-2009-5064 glibc: ldd unexpected code execution issue
CVE-2009-5064 glibc: ldd unexpected code execution issue
Common Vulnerabilities and Exposures assigned an identifier CVE-2009-5064 to the following vulnerability:
** DISPUTED ** ldd in the GNU C Library (aka glibc or libc6) 2.13 and
earlier allows local users to gain privileges via a Trojan horse
executable file linked with a modified loader that omits certain
LD_TRACE_LOADED_OBJECTS checks. NOTE: the GNU C Library vendor states
"This is just nonsense. There are a gazillion other ways to introduce
code if people are downloading arbitrary binaries and install them in
appropriate directories or set LD_LIBRARY_PATH etc."
References:
http://reverse.lostrealm.com/protect/ldd.html
http://www.catonmat.net/blog/ldd-arbitrary-code-execution/
http://thread.gmane.org/gmane.comp.security.oss.gener
http://openwall.com/lists/oss-security/2011/03/07/10http://openwall.com/lists/oss-security/2011/03/07/13http://openwall.com/lists/oss-security/2011/03/07/7http://openwall.com/lists/oss-security/2011/03/08/1http://openwall.com/lists/oss-security/2011/03/08/10http://openwall.com/lists/oss-security/2011/03/08/2http://openwall.com/lists/oss-security/2011/03/08/3http://openwall.com/lists/oss-security/2011/03/08/7http://reverse.lostrealm.com/protect/ldd.htmlhttp://www.catonmat.net/blog/ldd-arbitrary-code-execution/http://www.redhat.com/support/errata/RHSA-2011-1526.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=531160https://bugzilla.redhat.com/show_bug.cgi?id=682998http://openwall.com/lists/oss-security/2011/03/07/10http://openwall.com/lists/oss-security/2011/03/07/13http://openwall.com/lists/oss-security/2011/03/07/7http://openwall.com/lists/oss-security/2011/03/08/1http://openwall.com/lists/oss-security/2011/03/08/10http://openwall.com/lists/oss-security/2011/03/08/2http://openwall.com/lists/oss-security/2011/03/08/3http://openwall.com/lists/oss-security/2011/03/08/7http://reverse.lostrealm.com/protect/ldd.htmlhttp://www.catonmat.net/blog/ldd-arbitrary-code-execution/http://www.redhat.com/support/errata/RHSA-2011-1526.htmlhttps://bugzilla.redhat.com/show_bug.cgi?id=531160https://bugzilla.redhat.com/show_bug.cgi?id=682998
2011-03-30
Published