4.6
CVSSv2

CVE-2001-0610

Published: 02/08/2001 Updated: 19/12/2017
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 465
Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

kfm as included with KDE 1.x can allow a local malicious user to gain additional privileges via a symlink attack in the kfm cache directory in /tmp.

Vulnerable Product Search on Vulmon Subscribe to Product

suse suse linux 7.0

kde kde 1.x

Exploits

source: wwwsecurityfocuscom/bid/2629/info KFM is the KDE File Manager, included with version 1 of the KDE base package in most Linux installations KFM is designed as a graphical, easily navigated interface to the Linux Filesystem A problem with KFM could allow the overwriting of files owned by the KFM user KFM insecurely creates a dir ...