PT-2001-1808 · Kde · Kde

Publicado

2001-07-27

·

Atualizado

2017-12-19

·

CVE-2001-0610

CVSS v2.0

4.6

Média

VetorAV:L/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: KDE versions 1.x
Description: A local attacker can gain additional privileges via a symlink attack in the kfm cache directory in /tmp. This issue is related to the kfm component included with KDE.
Recommendations: For KDE version 1.x, consider restricting access to the kfm cache directory in /tmp to minimize the risk of exploitation. As a temporary workaround, avoid using the kfm component until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2001-0610

Produtos afetados

Kde