Package: chicken-bin
Version: 3.2.7-1
Severity: serious
Tags: security

Hello Davide,
chicken-bin includes a binary /usr/bin/chicken with a rpath pointing 
to /home/evo/chicken-3.2.7/debian/tmp/usr/lib

This allows an attacker with write access to that directory to
add modified libraries which will be loaded when someone
else run chicken-bin.

Cheers,
-- 
Bill. <[EMAIL PROTECTED]>

Imagine a large red swirl here. 



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to