CVE-2004-0530

The PHP package in Slackware 8.1, 9.0, and 9.1, when linked against a static library, includes /tmp in the search path, which allows local users to execute arbitrary code as the PHP user by inserting shared libraries into the appropriate path.
Configurations

Configuration 1 (hide)

OR cpe:2.3:o:slackware:slackware_linux:8.1:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:slackware:slackware_linux:9.1:*:*:*:*:*:*:*

History

20 Nov 2024, 23:48

Type Values Removed Values Added
References () http://secunia.com/advisories/11760 - () http://secunia.com/advisories/11760 -
References () http://www.securityfocus.com/bid/10461 - () http://www.securityfocus.com/bid/10461 -
References () http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.419765 - Patch, Vendor Advisory () http://www.slackware.com/security/viewer.php?l=slackware-security&y=2004&m=slackware-security.419765 - Patch, Vendor Advisory
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/16310 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/16310 -

Information

Published : 2004-08-06 04:00

Updated : 2025-04-03 01:03


NVD link : CVE-2004-0530

Mitre link : CVE-2004-0530

CVE.ORG link : CVE-2004-0530


JSON object : View

Products Affected

slackware

  • slackware_linux