<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>199841</bug_id>
          <alias>CVE-2005-4790</alias>
          <creation_ts>2007-11-20 23:25 0000</creation_ts>
          <short_desc>net-news/blam &lt; 1.8.4 CWD in LD_LIBRARY_PATH (CVE-2005-4790)</short_desc>
          <delta_ts>2008-01-27 17:10:56 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Security</product>
          <component>Vulnerabilities</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          
          <status_whiteboard>B2 [glsa]</status_whiteboard>
          
          <priority>P2</priority>
          <bug_severity>normal</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>rbu@gentoo.org</reporter>
          <assigned_to>security@gentoo.org</assigned_to>
          <cc>dotnet@gentoo.org</cc>
    
    <cc>jesse@boldandbusted.com</cc>
    
    <cc>latexer@gentoo.org</cc>

      

      
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2007-11-20 23:25:20 0000</bug_when>
            <thetext>CVE-2005-4790 (http://nvd.nist.gov/nvd.cfm?cvename=CVE-2005-4790):
  Multiple untrusted search path vulnerabilities in SUSE Linux 9.3 and 10.0
  cause the working directory to be added to LD_LIBRARY_PATH, which might allow
  local users to execute arbitrary code via (1) beagle, (2) tomboy, or (3) blam.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2007-11-20 23:28:50 0000</bug_when>
            <thetext>This bug is for blam.

I&apos;ll attach a patch for this, please coordinate the inclusion upstream and apply in the ebuild.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2007-11-20 23:32:29 0000</bug_when>
            <thetext>Created an attachment (id=136557)
blam-CVE-2005-4790-insecure-ldpath.patch

</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>py@gentoo.org</who>
            <bug_when>2007-12-09 00:04:53 0000</bug_when>
            <thetext>any news here?</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2007-12-19 04:02:16 0000</bug_when>
            <thetext>Maintainers, please apply the attached patch. Otherwise we will have to bump the package ourselves or apply a p.mask.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-01-08 01:50:27 0000</bug_when>
            <thetext>Created an attachment (id=140433)
blam-CVE-2005-4790-insecure-ldpath.patch

The patch above was a wrong file, sorry.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-01-08 02:41:25 0000</bug_when>
            <thetext>*blam-1.8.4 (08 Jan 2008)

  08 Jan 2008; Robert Buchholz &lt;rbu@gentoo.org&gt;
  -files/blam-1.6.0-gecko-fix.diff,
  -files/blam-1.6.1-mono-1.1.7-compat.diff,
  -files/blam-1.6.1-mono-1.1.7-compat-v2.diff,
  -files/blam-1.8.2-64-bit-int.diff, -files/blam-1.8.2-mono-1.1.17-fix.diff,
  -files/blam-1.8.2-seamonkey.patch, +blam-1.8.4.ebuild:
  Version bump by security for untrusted search path vulnerability
  (CVE-2005-4790, bug #199841). Cleaning up old patches.
</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-01-08 02:41:57 0000</bug_when>
            <thetext>Arches, please test and mark stable net-news/blam-1.8.4.
Target keywords : &quot;amd64 ppc x86&quot;
</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-01-08 02:42:34 0000</bug_when>
            <thetext>*** Bug 187283 has been marked as a duplicate of this bug. ***</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>fauli@gentoo.org</who>
            <bug_when>2008-01-08 09:27:01 0000</bug_when>
            <thetext>x86 stable</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>welp@gentoo.org</who>
            <bug_when>2008-01-11 17:54:13 0000</bug_when>
            <thetext>amd64 done.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>dertobi123@gentoo.org</who>
            <bug_when>2008-01-11 19:42:13 0000</bug_when>
            <thetext>ppc stable</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>jaervosz@gentoo.org</who>
            <bug_when>2008-01-13 14:04:10 0000</bug_when>
            <thetext>GLSA request filed.</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rbu@gentoo.org</who>
            <bug_when>2008-01-27 17:10:56 0000</bug_when>
            <thetext>GLSA 200801-14.</thetext>
          </long_desc>
      
          <attachment
              isobsolete="1"
              ispatch="1"
              isprivate="0"
          >
            <attachid>136557</attachid>
            <date>2007-11-20 23:32 0000</date>
            <desc>blam-CVE-2005-4790-insecure-ldpath.patch</desc>
            <filename>blam-CVE-2005-4790-insecure-ldpath.patch</filename>
            <type>text/plain</type>
            <data encoding="base64">SW5kZXg6IGJsYW0tMS44LjRwcmUyL2JsYW0uaW4KPT09PT09PT09PT09PT09PT09PT09PT09PT09
PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PT09PQotLS0gYmxhbS0xLjguNHBy
ZTIub3JpZy9ibGFtLmluCisrKyBibGFtLTEuOC40cHJlMi9ibGFtLmluCkBAIC0xLDQgKzEsNCBA
QAogIyEvYmluL2Jhc2gKIAotTERfTElCUkFSWV9QQVRIPSJAcHJlZml4QC9saWI2NC9ibGFtOkBN
T1pJTExBX0hPTUVAOiRMRF9MSUJSQVJZX1BBVEgiIE1PWklMTEFfRklWRV9IT01FPUBNT1pJTExB
X0hPTUVAIFwKK0xEX0xJQlJBUllfUEFUSD0iQHByZWZpeEAvbGliNjQvYmxhbTpATU9aSUxMQV9I
T01FQDoiIE1PWklMTEFfRklWRV9IT01FPUBNT1pJTExBX0hPTUVAIFwKIE1PWklMTEFfSE9NRT1A
TU9aSUxMQV9IT01FQCBleGVjIC1hICdibGFtJyBtb25vIEBwcmVmaXhAL2xpYjY0L2JsYW0vYmxh
bS5leGUgJEAK
</data>        

          </attachment>
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>140433</attachid>
            <date>2008-01-08 01:50 0000</date>
            <desc>blam-CVE-2005-4790-insecure-ldpath.patch</desc>
            <filename>blam-secure-paths.patch</filename>
            <type>text/plain</type>
            <data encoding="base64">LS0tIGJsYW0uaW4KKysrIGJsYW0uaW4KQEAgLTYsNyArNiw3IEBACiBNT1pJTExBX0ZJVkVfSE9N
RT1ATU9aSUxMQV9IT01FQAogZXhwb3J0IE1PWklMTEFfRklWRV9IT01FCiAKLUxEX0xJQlJBUllf
UEFUSD0iQHByZWZpeEAvbGliL2JsYW06QE1PWklMTEFfSE9NRUA6JExEX0xJQlJBUllfUEFUSCIK
K0xEX0xJQlJBUllfUEFUSD0iQHByZWZpeEAvbGliL2JsYW06QE1PWklMTEFfSE9NRUAke0xEX0xJ
QlJBUllfUEFUSCs6JExEX0xJQlJBUllfUEFUSH0iCiBleHBvcnQgTERfTElCUkFSWV9QQVRICiAK
IGV4ZWMgbW9ubyBAcHJlZml4QC9saWIvYmxhbS9ibGFtLmV4ZSAkQAo=
</data>        

          </attachment>
    </bug>

</bugzilla>