The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute.
References
Configurations
Configuration 1 (hide)
|
History
20 Nov 2024, 23:32
Type | Values Removed | Values Added |
---|---|---|
References | () http://archives.neohapsis.com/archives/bugtraq/2000-05/0172.html - | |
References | () http://www.novell.com/linux/security/advisories/suse_security_announce_50.html - | |
References | () http://www.securityfocus.com/bid/1206 - |
Information
Published : 2000-05-16 04:00
Updated : 2024-11-20 23:32
NVD link : CVE-2000-0393
Mitre link : CVE-2000-0393
CVE.ORG link : CVE-2000-0393
JSON object : View
Products Affected
kde
- kde
CWE