CVE-2025-4802 | GNU C Library up to 2.38 Environment Variable LD_LIBRARY_PATH untrusted search path (EUVD-2025-15553 / Nessus ID 237287)
A vulnerability was found in GNU C Library up to 2.38 and classified as problematic. Affected is an unknown function of the component Environment Variable Handler. Executing manipulation of the argument LD_LIBRARY_PATH can lead to untrusted search path.
This vulnerability appears as CVE-2025-4802. The attack requires local access. There is no available exploit.
It is suggested to upgrade the affected component.