CVE-2010-4833 Information

Description

Untrusted search path vulnerability in modules/engines/ms-windows/xp_theme.c in GTK+ before 2.24.0 allows local users to gain privileges via a Trojan horse uxtheme.dll file in the current working directory a different vulnerability than CVE-2010-4831.

Reference

http://git.gnome.org/browse/gtk+/commit/modules/engines/ms-windows/xp_theme.c?h=gtk-2-24&id=d6e11a97e318158f5d210a0476870dfe14ed95e6 http://secunia.com/advisories/45815 http://www.securityfocus.com/bid/49449

Share on: