Loading
gnome-shell in GNOME Shell 2.31.5 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
Use CWE-264, Gnome vendor hub and Gnome-Shell product page to widen CVE-2010-4000 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2017-8288, CVE-2014-7300 and CVE-2012-4427 for nearby disclosures in the same product family.