Mandriva Linux Security Advisory 2013-043 - This update fixes insecure getenv() usage in libgssglue, which could be used under some circumstances by local attackers do gain root privileges.
1fcd91ea96726db4478cf13582052b7ca9ca576e1909135d44bd7e922de538a2
Ubuntu Security Notice 1612-1 - It was discovered that libgssglue incorrectly handled the GSSAPI_MECH_CONF environment variable when running a privileged binary. A local attacker could exploit this to gain root privileges.
804e32cd01efd4b890bc3ce0fbb694f2f977a6f2c88b4518b52a6b8342278849
Gentoo Linux Security Advisory 201209-22 - A vulnerability in libgssglue may allow a local attacker to gain escalated privileges. Versions less than 0.4 are affected.
0d3d0000d184d912cc4e1048613d398e249e31801e65d26a33f4721fa15ec5fd