Red Hat Bugzilla – Bug 393281
CVE-2005-4791 liferea uses insecure LD_LIBRARY_PATH
Last modified: 2008-01-08 07:37:14 EST
Common Vulnerabilities and Exposures assigned an identifier CVE-2005-4791 to the following vulnerability:
Multiple untrusted search path vulnerabilities in SUSE Linux 10.0 cause the working directory to be added to LD_LIBRARY_PATH, which might allow local users to execute arbitrary code via (1) liferea or (2) banshee.
Version of bashee we ship are not affected.
s/bashee/banshee/ of course... sigh...
All affected Fedora versions are updated.