CVE-2010-3689
28.01.2011, 22:00
soffice in OpenOffice.org (OOo) 3.x before 3.3 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
Vendor | Product | Version |
---|---|---|
apache | openoffice | 3.0.0 ≤ 𝑥 < 3.3.0 |
canonical | ubuntu_linux | 8.04 |
canonical | ubuntu_linux | 9.10 |
canonical | ubuntu_linux | 10.04 |
canonical | ubuntu_linux | 10.10 |
debian | debian_linux | 5.0 |
debian | debian_linux | 6.0 |
𝑥
= Vulnerable software versions

Ubuntu Releases
References