Untrusted search path vulnerability in the pthread_win32_process_attach_np function in pthreadGC2.dll in Pthreads-win32 2.8.0 allows local users to gain privileges via a Trojan horse quserex.dll file in the current working directory. NOTE: some of these details are obtained from third party information.
References
Link | Resource |
---|---|
http://secunia.com/advisories/41215 | Not Applicable Vendor Advisory |
http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/ | Broken Link |
http://secunia.com/advisories/41215 | Not Applicable Vendor Advisory |
http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/ | Broken Link |
Configurations
History
21 Nov 2024, 01:22
Type | Values Removed | Values Added |
---|---|---|
References | () http://secunia.com/advisories/41215 - Not Applicable, Vendor Advisory | |
References | () http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/ - Broken Link |
Information
Published : 2012-09-07 10:32
Updated : 2024-11-21 01:22
NVD link : CVE-2010-5250
Mitre link : CVE-2010-5250
CVE.ORG link : CVE-2010-5250
JSON object : View
Products Affected
pthread-win32_project
- pthreads-win32
CWE
CWE-426
Untrusted Search Path