7.2
CVSSv2

CVE-2000-0460

Published: 27/05/2000 Updated: 10/09/2008
CVSS v2 Base Score: 7.2 | Impact Score: 10 | Exploitability Score: 3.9
VMScore: 725
Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Buffer overflow in KDE kdesud on Linux allows local uses to gain privileges via a long DISPLAY environmental variable.

Vulnerable Product Search on Vulmon Subscribe to Product

kde kde 1.1

kde kde 1.1.1

kde kde 1.1.2

kde kde 1.2

Exploits

source: wwwsecurityfocuscom/bid/1274/info /usr/bin/kdesud has a DISPLAY environment variable overflow which could allow for the execution of arbitrary code /* KDE: /usr/bin/kdesud exploit by noir * x86/Linux * noir@gsulinuxorgtr | noir@olymposorg * DISPLAY env overflow * this script will get you gid = 0 !! * tested on ...