CVE-2010-4159
EPSS 0.10%
Description
Untrusted search path vulnerability in metadata/loader.c in Mono 2.8 and earlier allows local users to gain privileges via a Trojan horse shared library in the current working directory.
How to fix CVE-2010-4159
To remediate CVE-2010-4159, upgrade the affected package to a fixed version below.
- Debian/mono—upgrade to 2.6.7-4 or later
Is CVE-2010-4159 being exploited?
Low — EPSS is 0.1%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 2.6.7-4