start_kdeinit in KDE 3.5.5 through 3.5.9, when installed setuid root, allows local users to cause a denial of service and possibly execute arbitrary code via user-influenceable input (probably command-line arguments) that cause start_kdeinit to send SIGUSR1 signals to other processes.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Kde | Kde | 3.5.5 (including) | 3.5.5 (including) |
Kde | Kde | 3.5.6 (including) | 3.5.6 (including) |
Kde | Kde | 3.5.7 (including) | 3.5.7 (including) |
Kde | Kde | 3.5.8 (including) | 3.5.8 (including) |
Kde | Kde | 3.5.9 (including) | 3.5.9 (including) |
Kdelibs | Ubuntu | devel | * |
Kdelibs | Ubuntu | feisty | * |
Kdelibs | Ubuntu | gutsy | * |
Kdelibs | Ubuntu | hardy | * |