CVE-2005-3346
Osh - Buffer Overflow
Title source: ruleDescription
Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the form "$VAR/EVAR=arg", which cause the EVAR portion to be appended to a buffer returned by a getenv function call.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Charles Stevenson · bashlocallinux
https://www.exploit-db.com/exploits/1300
References (9)
Scores
EPSS
0.0024
EPSS Percentile
47.6%
Details
Status
published
Products (1)
osh/osh
1.7.14
Published
Nov 20, 2005
Tracked Since
Feb 18, 2026