New Search

initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables when /sbin/service is executed which allows local users with sudo permissions for /sbin/service to gain root privileges via unknown vectors.

oval:org.mitre.oval:def:11198

initscripts in Red Hat Enterprise Linux 4 does not properly handle certain environment variables when /sbin/service is executed which allows local users with sudo permissions for /sbin/service to gain root privileges via unknown vectors.

Family:
unix
Status:
ACCEPTED
Platform(s):
  • CentOS Linux 4
  • Oracle Linux 4
  • CentOS Linux 3
  • Red Hat Enterprise Linux 3
  • Red Hat Enterprise Linux 4
Class:
vulnerability
Reference(s):
  • CVE-2005-3629
Product(s):