Sploitus

CVE-2010-3856

25 known exploits for CVE-2010-3856

ld.so in the GNU C Library (aka glibc or libc6) before 2.11.3, and 2.12.x before 2.12.2, does not properly restrict use of the LD_AUDIT environment variable to reference dynamic shared objects (DSOs) as audit objects, which allows local users to gain privileges by leveraging an unsafe DSO located in a trusted library directory, as demonstrated by libpcprofile.so.

Affected products
Red Hat, Glibc
Gnu Glibc
≤ 2.11.2, 1.00, 1.01, 1.02, 1.03, 1.04, 1.05, 1.06, 1.07, 1.08, 1.09, 1.09.1, 2.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.1, 2.1.1, 2.1.1.6, 2.1.2, 2.1.3, 2.1.3.10, 2.1.9, 2.2, 2.2.1, 2.2.2, 2.2.3, 2.2.4, 2.2.5, 2.3, 2.3.1, 2.3.2, 2.3.3, 2.3.4, 2.3.5, 2.3.6, 2.3.10
Fix
Available
CVSS 2.0
7.2 HIGH
EPSS
11.2% (96th percentile)
Weakness
CWE-264
NVD status
Modified
Published
2011-01-07
CVE-2010-3856 at NVD
Authoritative description, scoring and affected products

25 known exploits for CVE-2010-3856

Proof-of-concept code and exploit modules indexed by Sploitus

exploits
2026-08-26 KitPloitKITPLOIT
OpenSSH Forwarded SSH-Agent Remote Code Execution
2023-07-20 Qualys Security AdvisoryPACKETSTORM
WAGO 852 Industrial Managed Switch Series Code Execution / Hardcoded Credentials
2019-06-13 T. WeberPACKETSTORM
glibc LD_AUDIT libmemusage.so RHEL-Based Arbitrary DSO Load Privilege Escalation Exploit
2018-04-01 Marco IvaldiZDTRuby
glibc LD_AUDIT libmemusage.so RHEL-Based Arbitrary DSO Load Privilege Escalation
2018-03-30 Marco IvaldiPACKETSTORMRuby
glibc - 'LD_AUDIT' Arbitrary DSO Load Privilege Escalation (Metasploit)
2018-02-12 MetasploitEXPLOITDBRuby
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation Exploit
2018-02-10 Brendan ColesZDTRuby
glibc LD_AUDIT Arbitrary DSO Load Privilege Escalation
2018-02-10 Marco IvaldiPACKETSTORMRuby
GNU libc 2.12.1 LD_AUDIT libmemusage.so Local Root
2014-11-06 Saeid BostandoustPACKETSTORM
GNU libc 2.12.1 LD_AUDIT libpcprofile.so Local Root
2014-11-06 Saeid BostandoustPACKETSTORM
GNU C library dynamic linker LD_AUDIT arbitrary DSO load Vulnerability
2014-07-01 RootSEEBUG
glibc LD_AUDIT arbitrary DSO load Privilege Escalation
2014-07-01 RootSEEBUG
Glibc 2.11.3 / 2.12.x LD_AUDIT libmemusage.so Local Root Exploit
2013-05-19 Todor DonevZDTBash
Glibc 2.11.3 / 2.12.x LD_AUDIT libmemusage.so Local Root
2013-05-17 Todor DonevPACKETSTORM
glibc - LD_AUDIT Arbitrary DSO Load Privilege Escalation
2011-11-10 zx2c4EXPLOITPACKBash
glibc - 'LD_AUDIT' Arbitrary DSO Load Privilege Escalation
2011-11-10 zx2c4EXPLOITDBBash
glibc LD_AUDIT Privilege Escalation
2011-11-10 zx2c4PACKETSTORM
glibc LD_AUDIT arbitrary DSO load Privilege Escalation
2011-11-09 zx2c4ZDTBash
DSquare Exploit Pack: D2SEC_CVE_2010_3856
2011-01-07 DSquareD2
Immunity Canvas: CVE_2010_3856
2011-01-07 Immunity CanvasCANVAS
Debian 5.0.6 / Ubuntu 10.04 Webshell To Remote Root
2010-10-28 jmitPACKETSTORMPHP
GNU C library dynamic linker LD_AUDIT arbitrary DSO load Vulnerability
2010-10-23 Tavis OrmandyZDT
GNU C Library 2.x (libc6) - Dynamic Linker LD_AUDIT Arbitrary DSO Load Privilege Escalation
2010-10-22 Tavis OrmandyEXPLOITPACK
GNU C Library 2.x (libc6) - Dynamic Linker LD_AUDIT Arbitrary DSO Load Privilege Escalation
2010-10-22 Tavis OrmandyEXPLOITDB
GNU C Library Dynamic Linker Arbitrary DSO dlopen
2010-10-22 Tavis OrmandyPACKETSTORM