CVE Vulnerabilities

CVE-2008-0162

Published: Feb 22, 2008 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM

misc.c in splitvt 1.6.6 and earlier does not drop group privileges before executing xprop, which allows local users to gain privileges.

Affected Software

Name Vendor Start Version End Version
Debian_linux Debian 4.0 (including) 4.0 (including)
Splitvt Ubuntu dapper *
Splitvt Ubuntu devel *
Splitvt Ubuntu edgy *
Splitvt Ubuntu feisty *
Splitvt Ubuntu gutsy *
Splitvt Ubuntu hardy *
Splitvt Ubuntu intrepid *
Splitvt Ubuntu jaunty *

References