Posted at LWN.net: "A problem with the library could allow access to write or overwrite
Upon execution of SUID and SGID applications, the library allows a user
to preload libraries in the environment variable LD_PRELOAD providing
the variable does not contain forward slashes. A special check is also
performed to ensure the library being preloaded is SUID."
February 17, 2001