CVE-2005-1843

Adobe Version Cue 1.0-1.0.1 - Local Arbitrary Library Loading via -lib Command Line Argument

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2005-1843. PoCs published by vade79.

AI-analyzed exploit summary This exploit leverages a local privilege escalation vulnerability in Adobe Version Cue's VCNative program on macOS. It abuses the '-lib' command-line option to load a malicious bundle, which then sets the SUID bit on a rootshell binary, allowing the attacker to gain root privileges.

Description

VCNative for Adobe Version Cue 1.0 and 1.0.1, as used in Creative Suite 1.0 and 1.3, and when running on Mac OS X with Version Cue Workspace, allows local users to load arbitrary libraries and execute arbitrary code via the -lib command line argument.

Exploits (1)

exploitdb WORKING POC VERIFIED
by vade79 · clocalosx
https://www.exploit-db.com/exploits/1186

This exploit leverages a local privilege escalation vulnerability in Adobe Version Cue's VCNative program on macOS. It abuses the '-lib' command-line option to load a malicious bundle, which then sets the SUID bit on a rootshell binary, allowing the attacker to gain root privileges.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Adobe Version Cue VCNative (macOS)
No auth needed
Prerequisites: Adobe Version Cue installed with VCNative setuid root · GCC or compatible compiler available · Local access to the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (5)

Core 5
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/14638
Patch, Vendor Advisory x_refsource_confirm
http://www.adobe.com/support/techdocs/327129.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1014776
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/16541
Various Sources third-party-advisory x_refsource_idefense
http://www.idefense.com/application/poi/display?id=296&type=vulnerabilities

Scores

EPSS 0.0122
EPSS Percentile 64.9%

Details

Status published
Products (2)
adobe/version_cue 1.0
adobe/version_cue 1.0.1
Published Aug 24, 2005
Tracked Since Feb 18, 2026