VULNERABILITY INTELLIGENCE

CVE-2002-1472

CVSS score7.2 HIGH
EPSS probability0.37%
CISA KEVNot currently listed
Published2003-03-03
Last modified2026-06-16
CVSS vectorAV:L/AC:L/Au:N/C:C/I:C/A:C

Description

Untrusted search path vulnerability in libX11.so in xfree86, when used in setuid or setgid programs, allows local users to gain root privileges via a modified LD_PRELOAD environment variable that points to a malicious module.

Primary references