VYPR
Unrated severityNVD Advisory· Published Jun 25, 2008· Updated Apr 23, 2026

CVE-2008-1951

CVE-2008-1951

Description

Untrusted search path vulnerability in a certain Red Hat build script for Standards Based Linux Instrumentation for Manageability (sblim) libraries before 1-13a.el4_6.1 in Red Hat Enterprise Linux (RHEL) 4, and before 1-31.el5_2.1 in RHEL 5, allows local users to gain privileges via a malicious library in a certain subdirectory of /var/tmp, related to an incorrect RPATH setting, as demonstrated by a malicious libc.so library for tog-pegasus.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

3
  • cpe:2.3:o:redhat:enterprise_linux:4:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:redhat:enterprise_linux:4:*:*:*:*:*:*:*
    • cpe:2.3:o:redhat:enterprise_linux:5:*:*:*:*:*:*:*
  • Red Hat/sblimllm-create
    Range: <1-13a.el4_6.1 (RHEL 4) and <1-31.el5_2.1 (RHEL 5)

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.