CVE-2010-3856
ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic shared objects (DSOs) as audit objects, which allows local users to gain privileges by leveraging an unsafe DSO located in a trusted library directory, as demonstrated by libpcprofile.so.
- Gnu Glibc
- ≤ 2.11.2, 1.00, 1.01, 1.02, 1.03, 1.04, 1.05, 1.06, 1.07, 1.08, 1.09, 1.09.1, 2.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.1, 2.1.1, 2.1.1.6, 2.1.2, 2.1.3, 2.1.3.10, 2.1.9, 2.2, 2.2.1, 2.2.2, 2.2.3, 2.2.4, 2.2.5, 2.3, 2.3.1, 2.3.2, 2.3.3, 2.3.4, 2.3.5, 2.3.6, 2.3.10
- Fix
- Available
- CVSS 2.0
- 7.2 HIGH
- EPSS
- 11.2% (96th percentile)
- Weakness
- CWE-264
- NVD status
- Modified
- Published
- 2011-01-07
CVE-2010-3856 at NVD
25 known exploits for CVE-2010-3856
Proof-of-concept code and exploit modules indexed by Sploitus
exploits
OpenSSH Forwarded SSH-Agent Remote Code Execution
WAGO 852 Industrial Managed Switch Series Code Execution / Hardcoded Credentials
glibc LD_AUDIT libmemusage.so RHEL-Based Arbitrary DSO Load Privilege Escalation Exploit
glibc LD_AUDIT libmemusage.so RHEL-Based Arbitrary DSO Load Privilege Escalation
glibc - 'LD_AUDIT' Arbitrary DSO Load Privilege Escalation (Metasploit)
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation Exploit
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation
GNU libc 2.12.1 LD_AUDIT libmemusage.so Local Root
GNU libc 2.12.1 LD_AUDIT libpcprofile.so Local Root
GNU C library dynamic linker LD_AUDIT arbitrary DSO load Vulnerability
glibc LD_AUDIT arbitrary DSO load Privilege Escalation
Glibc 2.11.3 / 2.12.x LD_AUDIT libmemusage.so Local Root Exploit
Glibc 2.11.3 / 2.12.x LD_AUDIT libmemusage.so Local Root
glibc - LD_AUDIT Arbitrary DSO Load Privilege Escalation
glibc - 'LD_AUDIT' Arbitrary DSO Load Privilege Escalation
glibc LD_AUDIT Privilege Escalation
glibc LD_AUDIT arbitrary DSO load Privilege Escalation
DSquare Exploit Pack: D2SEC_CVE_2010_3856
Immunity Canvas: CVE_2010_3856
Debian 5.0.6 / Ubuntu 10.04 Webshell To Remote Root
GNU C library dynamic linker LD_AUDIT arbitrary DSO load Vulnerability
GNU C Library 2.x (libc6) - Dynamic Linker LD_AUDIT Arbitrary DSO Load Privilege Escalation
GNU C Library 2.x (libc6) - Dynamic Linker LD_AUDIT Arbitrary DSO Load Privilege Escalation
GNU C Library Dynamic Linker Arbitrary DSO dlopen