Candidate: CVE-2010-3353 PublicDate: 2010-10-20 18:00:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3353 Description: Cowbell 0.2.7.1 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_cowbell: upstream_cowbell: released (0.2.7.1-7) dapper_cowbell: ignored (reached end-of-life) hardy_cowbell: ignored (reached end-of-life) jaunty_cowbell: ignored (reached end-of-life) karmic_cowbell: ignored (reached end-of-life) lucid_cowbell: ignored (reached end-of-life) maverick_cowbell: ignored (reached end-of-life) natty_cowbell: ignored (reached end-of-life) oneiric_cowbell: ignored (reached end-of-life) precise_cowbell: ignored (reached end-of-life) precise/esm_cowbell: DNE (precise was needs-triage) quantal_cowbell: ignored (reached end-of-life) raring_cowbell: ignored (reached end-of-life) saucy_cowbell: ignored (reached end-of-life) trusty_cowbell: not-affected (0.2.7.1-7) trusty/esm_cowbell: DNE (trusty was not-affected [0.2.7.1-7]) utopic_cowbell: ignored (reached end-of-life) vivid_cowbell: ignored (reached end-of-life) vivid/stable-phone-overlay_cowbell: DNE vivid/ubuntu-core_cowbell: DNE wily_cowbell: ignored (reached end-of-life) xenial_cowbell: not-affected (0.2.7.1-7) yakkety_cowbell: ignored (reached end-of-life) zesty_cowbell: ignored (reached end-of-life) artful_cowbell: ignored (reached end-of-life) bionic_cowbell: not-affected (0.2.7.1-7) cosmic_cowbell: not-affected (0.2.7.1-7) devel_cowbell: not-affected (0.2.7.1-7)