CVE-2005-3346

Osh - Buffer Overflow

Title source: rule

Description

Buffer overflow in the environment variable substitution code in main.c in OSH 1.7-14 allows local users to inject arbitrary environment variables, such as LD_PRELOAD, via pathname arguments of the form "$VAR/EVAR=arg", which cause the EVAR portion to be appended to a buffer returned by a getenv function call.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Charles Stevenson · bashlocallinux
https://www.exploit-db.com/exploits/1300

Scores

EPSS 0.0024
EPSS Percentile 47.6%

Details

Status published
Products (1)
osh/osh 1.7.14
Published Nov 20, 2005
Tracked Since Feb 18, 2026