CVE-2006-4124

LessTif <0.95.0 - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2006-4124. PoCs published by Karol Wiesek.

AI-analyzed exploit summary This exploit leverages a vulnerability in mtink to achieve local privilege escalation by preloading a malicious shared library via /etc/ld.so.preload. The library hooks into the initialization process to spawn a root shell if the effective UID is root while the real UID is not.

Description

The libXm library in LessTif 0.95.0 and earlier allows local users to gain privileges via the DEBUG_FILE environment variable, which is used to create world-writable files when libXm is run from a setuid program.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Karol Wiesek · bashlocallinux
https://www.exploit-db.com/exploits/2144

This exploit leverages a vulnerability in mtink to achieve local privilege escalation by preloading a malicious shared library via /etc/ld.so.preload. The library hooks into the initialization process to spawn a root shell if the effective UID is root while the real UID is not.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Trivial
Reliability
Reliable
Target: mtink (version not specified)
No auth needed
Prerequisites: Local access to the system · mtink installed · GCC and ld tools available
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (6)

Core 6
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/2144
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19430
Exploit, Vendor Advisory x_refsource_misc
http://karol.wiesek.pl/files/lesstif-advisory.pdf
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3230
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21428
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/28298

Scores

EPSS 0.0045
EPSS Percentile 35.7%

Details

Status published
Products (2)
lesstif/lesstif 0.93.94
lesstif/lesstif < 0.95.0
Published Aug 14, 2006
Tracked Since Feb 18, 2026