Overly broad permissions can turn one compromised account into a much larger security problem. Learn how to reduce unnecessary access, review privileges, and apply least privilege across modern Linux systems. Review Linux Privileges×

Alerts This Week
Warning Icon 1 461
Alerts This Week
Warning Icon 1 461

Gentoo: GLSA-200503-01 Normal: Qt Untrusted Library Path Issue

gentoo
Calendar Grey March 1, 2005
Scroller Gentoo
Gentoo GLSA 202310-07 addresses a potential security flaw in OpenSSL's handling of certificates, classified as high severity, recommending users to upgrade to mitigate risks.
Qt may load shared libraries from an untrusted, world-writable directory, resulting in the execution of arbitrary code.

Summary

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
Gentoo Linux Security Advisory                           GLSA 200503-01
                                            https://security.gentoo.org/

Severity: Normal Title: Qt: Untrusted library search path Date: March 01, 2005 Bugs: #75181 ID: 200503-01

Synopsis ======= Qt may load shared libraries from an untrusted, world-writable directory, resulting in the execution of arbitrary code.
Background ========= Qt is a cross-platform GUI toolkit used by KDE.
Affected packages ================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 x11-libs/qt < 3.3.4-r2 >= 3.3.4-r2
========== Tavis Ormandy of the Gentoo Linux Security Audit Team has discovered that Qt searches for shared libraries in an untrusted, world...

Read the Full Advisory

Resolution

References

Availability

style>.gentoo_availability{display:block;}

Concerns

Synopsis

Background

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Affected Packages

Impact

Workaround