CVEs affecting projects tracked on Release Alert, from NVD & OSV.
CVE-2010-3354 — MEDIUM severity vulnerability | Release Alert
CVE-2010-3354
6.9
MEDIUMCVSS v2
Published
October 20, 2010
Affected
1 project
Assigned by
MITRE
Severity scale
010
Description
dropboxd in Dropbox 0.7.110 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
ChocolateyDropbox is a free service that lets you bring all your photos, docs, and videos anywhere. This means that any file you save to your Dropbox will automatically save to all your computers, phones and even the Dropbox website. Dropbox also makes it super easy to share with others, whether you're a student or professional, parent or grandparent. Even if you accidentally spill a latte on your laptop, have no fear! You can relax knowing that Dropbox always has you covered, and none of your stuff will ever be lost.
## Features
- Best-in-class sync technology
- Easy and secure sharing
- Anytime, anywhere access
- 256-bit AES and SSL/TLS encryption
- Version history and file recovery
- Advanced sharing permissions
- Password-protected and expiring shared links
- Remote device wipe
- Require two-factor authentication (2FA)
- Granular permissions
- Account transfer tool
- Enables HIPAA compliance
- Dropbox Paper
- MS Office 365 integration
- Dropbox badge
- Commenting
- Plus button
- File requests
- Smart Sync
- Team folder
- Admin console
- Centralized billing
- Company-managed groups
- Unlimited API access to platform partners
- API access for data transport
- Priority email support
- Live chat support
## Notes
- **If the package is out of date please check [Version History](#versionhistory) for the latest submitted version. If you have a question, please ask it in [Chocolatey Community Package Discussions](https://github.com/chocolatey-community/chocolatey-packages/discussions) or raise an issue on the [Chocolatey Community Packages Repository](https://github.com/chocolatey-community/chocolatey-packages/issues) if you have problems with the package. Disqus comments will generally not be responded to.**