KDE kdesud DISPLAY Environment Variable Overflow
BID:1274
Info
KDE kdesud DISPLAY Environment Variable Overflow
| Bugtraq ID: | 1274 |
| Class: | Boundary Condition Error |
| CVE: | |
| Remote: | Unknown |
| Local: | Yes |
| Published: | May 27 2000 12:00AM |
| Updated: | May 27 2000 12:00AM |
| Credit: | Posted to BugTraq on Friday May 26, 2000 by noir <[email protected]> |
| Vulnerable: |
KDE KDE 1.2 KDE KDE 1.1.2 KDE KDE 1.1.1 KDE KDE 1.1 |
| Not Vulnerable: | |
Discussion
KDE kdesud DISPLAY Environment Variable Overflow
/usr/bin/kdesud has a DISPLAY environment variable overflow which could allow for the execution of arbitrary code.
/usr/bin/kdesud has a DISPLAY environment variable overflow which could allow for the execution of arbitrary code.
Exploit / POC
KDE kdesud DISPLAY Environment Variable Overflow
This exploit was tested on Mandrake 7.02 and results in gid=0
This exploit was tested on Mandrake 7.02 and results in gid=0