CVE-2001-0084

GTK+ library allows local users to specify arbitrary modules via the GTK_MODULES environmental variable, which could allow local users to gain privileges if GTK+ is used by a setuid/setgid program.
Configurations

Configuration 1 (hide)

cpe:2.3:a:gnome:gtk:1.2.8:*:*:*:*:*:*:*

History

20 Nov 2024, 23:34

Type Values Removed Values Added
References () http://archives.neohapsis.com/archives/bugtraq/2000-12/0498.html - Exploit () http://archives.neohapsis.com/archives/bugtraq/2000-12/0498.html - Exploit
References () http://archives.neohapsis.com/archives/bugtraq/2001-01/0027.html - Third Party Advisory () http://archives.neohapsis.com/archives/bugtraq/2001-01/0027.html - Third Party Advisory
References () http://www.gtk.org/setuid.html - Third Party Advisory () http://www.gtk.org/setuid.html - Third Party Advisory
References () http://www.securityfocus.com/bid/2165 - Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory () http://www.securityfocus.com/bid/2165 - Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory

03 Aug 2023, 17:15

Type Values Removed Values Added
References (BUGTRAQ) http://archives.neohapsis.com/archives/bugtraq/2001-01/0027.html - (BUGTRAQ) http://archives.neohapsis.com/archives/bugtraq/2001-01/0027.html - Third Party Advisory
References (MISC) http://www.gtk.org/setuid.html - (MISC) http://www.gtk.org/setuid.html - Third Party Advisory
References (BID) http://www.securityfocus.com/bid/2165 - Exploit, Patch, Vendor Advisory (BID) http://www.securityfocus.com/bid/2165 - Exploit, Patch, Third Party Advisory, VDB Entry, Vendor Advisory
First Time Gnome gtk
Gnome
CPE cpe:2.3:a:gtk:gtk\+:1.2.8:*:*:*:*:*:*:* cpe:2.3:a:gnome:gtk:1.2.8:*:*:*:*:*:*:*

Information

Published : 2001-02-12 05:00

Updated : 2024-11-20 23:34


NVD link : CVE-2001-0084

Mitre link : CVE-2001-0084

CVE.ORG link : CVE-2001-0084


JSON object : View

Products Affected

gnome

  • gtk