The KDE kscd program does not drop privileges when executing a program specified in a user's SHELL environmental variable, which allows the user to gain privileges by specifying an alternate program to execute.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2000-07-12T04:00:00
Updated: 2005-11-02T10:00:00
Reserved: 2000-06-14T00:00:00
Link: CVE-2000-0393
JSON object: View
NVD Information
Status : Analyzed
Published: 2000-05-16T04:00:00.000
Modified: 2008-09-10T19:04:34.383
Link: CVE-2000-0393
JSON object: View
Redhat Information
No data.
CWE