Privilege Escalation Vulnerability in TeamSpeak Software
CVE-2010-3383

Currently unrated

Key Information:

Vendor

Teamspeak

Status
Vendor
CVE Published:
20 October 2010

What is CVE-2010-3383?

The TeamSpeak 2.0.32 version contains a vulnerability in its teamspeak and teamspeak-server scripts. These scripts erroneously set a zero-length directory name in the LD_LIBRARY_PATH environment variable. This misconfiguration allows local users to exploit this flaw by placing a Trojan horse shared library in the current working directory, potentially leading to unauthorized privilege escalation.

References

Timeline

  • Vulnerability Reserved

  • Vulnerability published

.