CVE-2009-0415 describes an untrusted search path vulnerability in trickle 1.07, affecting the "monkey trickle" product. This flaw allows a local attacker to execute arbitrary code by placing a malicious trickle-overload.so file in the current working directory, which is then loaded via the LD_PRELOAD path. The vulnerability has a low CVSS score of 3.7, indicating a local attack vector with high attack complexity, potentially leading to partial confidentiality, integrity, and availability impacts. There is no evidence of active exploitation, no known exploit code in Metasploit or ExploitDB, and minimal community discussion or media coverage.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
1.07CPE matchmatch criteria | cpe:2.3:a:monkey:trickle:1.07:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:L/AC:H/Au:N/C:P/I:P/A:P
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.