CVE-2005-4158

Impact:
Low
Public Date:
2004-11-11
Bugzilla:
139478: CVE-2004-1051 bash scripts run via Sudo can be subverted (CVE-2005-4158, CVE-2006-0151)

The MITRE CVE dictionary describes this issue as:

Sudo before 1.6.8 p12, when the Perl taint flag is off, does not clear the (1) PERLLIB, (2) PERL5LIB, and (3) PERL5OPT environment variables, which allows limited local users to cause a Perl script to include and execute arbitrary library files that have the same name as library files that are included by the script.

Find out more about CVE-2005-4158 from the MITRE CVE dictionary dictionary and NIST NVD.

Statement

We do not consider this to be a security issue.
https://bugzilla.redhat.com/show_bug.cgi?id=139478#c1

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.