Debian Linux Security Advisory 2107-1 – Dan Rosenberg discovered that in couchdb, a distributed, fault-tolerant and schema-free document-oriented database, an insecure library search path is used; a local attacker could execute arbitrary code by first dumping a maliciously crafted shared library in some directory, and then having an administrator run couchdb from this same directory.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/93728/dsa-2107-1.txt
Source: https://packetstormsecurity.com/files/93728/Debian-Linux-Security-Advisory-2107-1.html

