CVE-2005-4595

Gentoo nview and xnview - Untrusted Search Path Vulnerability

Title source: llm
STIX 2.1

Description

Untrusted search path vulnerability (RPATH) in XnView 1.70 and NView 4.51 on Gentoo Linux allows local users to execute arbitrary code via a malicious library in the current working directory.

References (8)

Core 8
Core References
Issue Tracking x_refsource_misc
http://bugs.gentoo.org/show_bug.cgi?id=117063
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/22093
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/22094
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18235
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/23910
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/16087
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18240
Patch vendor-advisory x_refsource_gentoo
http://www.gentoo.org/security/en/glsa/glsa-200512-18.xml

Scores

EPSS 0.0007
EPSS Percentile 21.1%

Details

Status published
Products (2)
gentoo/nview 4.51
gentoo/xnview 1.70
Published Dec 31, 2005
Tracked Since Feb 18, 2026