Computer Security
[EN] securityvulns.ru
no-pyccku



KDE kdm symbolic links problem
Published:15.06.2006
Source:BUGTRAQ
SecurityVulns ID:6268
Type:local
Level:6/10
Description:Suid root application tries to read configuration from ~/.dmrc file without checking for symbolic links. It makes it possible to read few trings from any file with symbolic link.
Affected:KDE : KDE 3.4
Original documentdocumentUBUNTU, [USN-301-1] kdm vulnerability (15.06.2006)
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server