CVE-2005-0457

Opera 7.54 and earlier on Gentoo Linux uses an insecure path for plugins, which could allow local users to gain privileges by inserting malicious libraries into the PORTAGE_TMPDIR (portage) temporary directory.
References
Link Resource
http://bugs.gentoo.org/show_bug.cgi?id=81747 Third Party Advisory Vendor Advisory
http://www.gentoo.org/security/en/glsa/glsa-200502-17.xml Patch Third Party Advisory Vendor Advisory
http://bugs.gentoo.org/show_bug.cgi?id=81747 Third Party Advisory Vendor Advisory
http://www.gentoo.org/security/en/glsa/glsa-200502-17.xml Patch Third Party Advisory Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*

History

20 Nov 2024, 23:55

Type Values Removed Values Added
References () http://bugs.gentoo.org/show_bug.cgi?id=81747 - Third Party Advisory, Vendor Advisory () http://bugs.gentoo.org/show_bug.cgi?id=81747 - Third Party Advisory, Vendor Advisory
References () http://www.gentoo.org/security/en/glsa/glsa-200502-17.xml - Patch, Third Party Advisory, Vendor Advisory () http://www.gentoo.org/security/en/glsa/glsa-200502-17.xml - Patch, Third Party Advisory, Vendor Advisory

Information

Published : 2005-05-02 04:00

Updated : 2024-11-20 23:55


NVD link : CVE-2005-0457

Mitre link : CVE-2005-0457

CVE.ORG link : CVE-2005-0457


JSON object : View

Products Affected

opera

  • opera_browser
CWE
CWE-427

Uncontrolled Search Path Element