Security Advisory

CVE-2009-1144

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2009-04-09 15:00:00
Last updated 2024-08-07 05:04:48
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Untrusted search path vulnerability in the Gentoo package of Xpdf before 3.02-r2 allows local users to gain privileges via a Trojan horse xpdfrc file in the current working directory, related to an unset SYSTEM_XPDFRC macro in a Gentoo build process that uses the poppler library.