CVE-2010-5250

Untrusted search path vulnerability in the pthread_win32_process_attach_np function in pthreadGC2.dll in Pthreads-win32 2.8.0 allows local users to gain privileges via a Trojan horse quserex.dll file in the current working directory. NOTE: some of these details are obtained from third party information.
Configurations

Configuration 1 (hide)

cpe:2.3:a:pthread-win32_project:pthreads-win32:2.8.0:*:*:*:*:*:*:*

History

06 Sep 2022, 17:52

Type Values Removed Values Added
CWE NVD-CWE-Other CWE-426
References (SECUNIA) http://secunia.com/advisories/41215 - Vendor Advisory (SECUNIA) http://secunia.com/advisories/41215 - Not Applicable, Vendor Advisory
References (MISC) http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/ - (MISC) http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/ - Broken Link
CPE cpe:2.3:a:ross_johnson:pthreads-win32:2.8.0:*:*:*:*:*:*:* cpe:2.3:a:pthread-win32_project:pthreads-win32:2.8.0:*:*:*:*:*:*:*

Information

Published : 2012-09-07 10:32

Updated : 2024-02-04 18:16


NVD link : CVE-2010-5250

Mitre link : CVE-2010-5250

CVE.ORG link : CVE-2010-5250


JSON object : View

Products Affected

pthread-win32_project

  • pthreads-win32
CWE
CWE-426

Untrusted Search Path