Oval Definition:oval:org.opensuse.security:def:20083277
Revision Date:2022-05-20Version:1
Title:CVE-2008-3277
Description:

Untrusted search path vulnerability in a certain Red Hat build script for the ibmssh executable in ibutils packages before ibutils-1.5.7-2.el6 in Red Hat Enterprise Linux (RHEL) 6 and ibutils-1.2-11.2.el5 in Red Hat Enterprise Linux (RHEL) 5 allows local users to gain privileges via a Trojan Horse program in refix/lib/, related to an incorrect RPATH setting in the ELF header.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2008-3277
Mitre CVE-2008-3277
SUSE CVE-2008-3277
Platform(s):SUSE Linux Enterprise Desktop 11 SP4
SUSE Linux Enterprise Server 11 SP1
SUSE Linux Enterprise Server 11 SP2
SUSE Linux Enterprise Server 11 SP3
SUSE Linux Enterprise Server 11 SP4
SUSE Linux Enterprise Server for SAP Applications 11 SP4
SUSE Linux Enterprise Software Development Kit 11 SP4
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND Package Information
  • ibutils-1.5.7-0.7 is installed
  • OR ibutils-32bit-1.5.7-0.7 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • ibutils-1.5.7-0.7 is installed
  • OR ibutils-32bit-1.5.7-0.7 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15 is installed
  • OR ibutils-32bit-1.5.7-0.15 is installed
  • OR ibutils-devel-1.5.7-0.15 is installed
  • OR ibutils-devel-32bit-1.5.7-0.15 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15 is installed
  • OR ibutils-32bit-1.5.7-0.15 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • ibutils-1.5.7-0.7 is installed
  • OR ibutils-32bit-1.5.7-0.7 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15 is installed
  • OR ibutils-32bit-1.5.7-0.15 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • ibutils-1.5.7-0.7.31 is installed
  • OR ibutils-32bit-1.5.7-0.7.31 is installed
  • OR Package Information
  • SUSE Linux Enterprise Software Development Kit 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15.22 is installed
  • OR ibutils-32bit-1.5.7-0.15.22 is installed
  • OR ibutils-devel-1.5.7-0.15.22 is installed
  • OR ibutils-devel-32bit-1.5.7-0.15.22 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15.22 is installed
  • OR ibutils-32bit-1.5.7-0.15.22 is installed
  • Definition Synopsis
  • Release Information
  • SUSE Linux Enterprise Server 11 SP1 is installed
  • OR SUSE Linux Enterprise Server 11 SP2 is installed
  • AND ibutils is affected
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP3 is installed
  • AND
  • ibutils-1.5.7-0.7.31 is installed
  • OR ibutils-32bit-1.5.7-0.7.31 is installed
  • OR Package Information
  • SUSE Linux Enterprise Server 11 SP4 is installed
  • AND
  • ibutils-1.5.7-0.15.22 is installed
  • OR ibutils-32bit-1.5.7-0.15.22 is installed
  • BACK