ld.so from Solaris 9 and 10 does not check the LD_AUDIT environment variable when running setuid and setgid binaries, allowing a malicious party to run arbitrary code with elevated privileges.
02b0fa3de66ae2c25e511bb747ec86a9
© 2012 Packet Storm. All rights reserved.