[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247768

 
 

909

 
 

194555

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-1500 splitvt -- privilege escalation

ID: oval:org.mitre.oval:def:8133Date: (C)2009-12-15   (M)2021-09-11
Class: PATCHFamily: unix




Mike Ashton discovered that splitvt, a utility to run two programs in a split screen, did not drop group privileges prior to executing xprop. This could allow any local user to gain the privileges of group utmp.

Platform:
Debian 4.0
Product:
splitvt
Reference:
DSA-1500
CVE-2008-0162
CVE    1
CVE-2008-0162
CPE    1
cpe:/o:debian:debian_linux:4.x

© SecPod Technologies