Back

HIGH

glibc: ld.so arbitrary DSO loading via LD_AUDIT in setuid/setgid programs

Published Jan 7, 2011

Description

ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic shared objects (DSOs) as audit objects, which allows local users to gain privileges by leveraging an unsafe DSO located in a trusted library directory, as demonstrated by libpcprofile.so.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (2)

References (27)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Jan 7, 2011
Updated Feb 13, 2025
Reserved Oct 8, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Important
Public date Oct 22, 2010