CVE Vulnerabilities

CVE-2004-0157

Published: Jun 01, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

x11.c in xonix 1.4 and earlier uses the current working directory to find and execute the rmail program, which allows local users to execute arbitrary code by modifying the path to point to a malicious rmail program.

Affected Software

NameVendorStart VersionEnd Version
XonixXonix*1.4 (including)
XonixUbuntudapper*
XonixUbuntudevel*
XonixUbuntuedgy*
XonixUbuntufeisty*

References