Back to search
CVE-2001-0178
Published: May 7, 2001
Modified: Aug 8, 2024
PUBLISHED
Description
kdesu program in KDE2 (KDE before 2.2.0-6) does not properly verify the owner of a UNIX socket that is used to send a password, which allows local users to steal passwords and gain privileges.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
SuSE-SA:2001:02
vendor-advisory
x_refsource_SUSE
CSSA-2001-005.0
vendor-advisory
x_refsource_CALDERA
MDKSA-2001:018
vendor-advisory
x_refsource_MANDRAKE
kde2-kdesu-retrieve-passwords(5995)
vdb-entry
x_refsource_XF
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now