Description
OpenVPN 2.0 through 2.0.5 allows remote malicious servers to execute arbitrary code on the client by using setenv with the LD_PRELOAD environment variable.
Remediation
References
Related Vulnerabilities
Moodle Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-20187)
WordPress Plugin Rotating Testimonial Cross-Site Scripting (1.1)
IBM RTC Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-29701)
ownCloud Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2013-0301)