KDE KApplication configfile vulnerability...

- AV AC AU C I A
发布: 2000-05-31
修订: 2025-04-13

The KDE configuration-file management has a bug which could result in root compromise. Due to insecure creation of configuration (rc) files via KApplication-class, local users can modify ownership of arbitrary files when running setuid root KDE-programs. Properly exploited, this can permit a local attacker to change ownership of key system files, then write arbitrary data to them, allowing an elevation of privileges.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息