Untrusted search path vulnerability in Gauche before 0.8.6-r1 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build directory, which is part of the RUNPATH.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2005-4438
http://www.securityfocus.com/bid/15120